Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Malware and Cleaning Programs won't run


  • Please log in to reply

#16
dlwtechquest

dlwtechquest

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

Lines copied and pasted into command promp, response text below...

 

 
Image Name                     PID Services                                    
========================= ======== ============================================
System Idle Process              0 N/A                                         
System                           4 N/A                                         
Registry                        96 N/A                                         
smss.exe                       376 N/A                                         
csrss.exe                      544 N/A                                         
wininit.exe                    620 N/A                                         
services.exe                   700 N/A                                         
lsass.exe                      712 KeyIso, SamSs, VaultSvc                     
fontdrvhost.exe                892 N/A                                         
svchost.exe                    928 PlugPlay                                    
svchost.exe                   1000 BrokerInfrastructure, DcomLaunch, Power,    
                                   SystemEventsBroker                          
svchost.exe                    488 RpcEptMapper, RpcSs                         
svchost.exe                    616 LSM                                         
svchost.exe                   1212 TermService                                 
svchost.exe                   1296 BFE, CoreMessagingRegistrar, mpssvc         
svchost.exe                   1328 NcbService                                  
svchost.exe                   1456 Schedule                                    
svchost.exe                   1464 EventLog                                    
svchost.exe                   1504 TimeBrokerSvc                               
svchost.exe                   1512 ProfSvc                                     
svchost.exe                   1540 hidserv                                     
svchost.exe                   1660 UserManager                                 
svchost.exe                   1756 SysMain                                     
svchost.exe                   1764 Themes                                      
svchost.exe                   1848 nsi                                         
svchost.exe                   1856 EventSystem                                 
Memory Compression            1864 N/A                                         
svchost.exe                   1952 SENS                                        
svchost.exe                   2008 lfsvc                                       
svchost.exe                   2032 AudioEndpointBuilder                        
svchost.exe                   2028 Dhcp                                        
svchost.exe                   2000 FontCache                                   
svchost.exe                   2100 NlaSvc                                      
svchost.exe                   2132 Dnscache                                    
svchost.exe                   2196 netprofm                                    
svchost.exe                   2336 LanmanWorkstation                           
svchost.exe                   2384 SessionEnv                                  
svchost.exe                   2716 Audiosrv                                    
svchost.exe                   2772 StateRepository                             
svchost.exe                   2940 DusmSvc                                     
svchost.exe                   2952 Wcmsvc                                      
svchost.exe                   1044 WlanSvc                                     
svchost.exe                   2520 Winmgmt                                     
cmcore.exe                    2752 cmcore                                      
svchost.exe                   2888 ShellHWDetection                            
spoolsv.exe                   3276 Spooler                                     
AppleMobileDeviceService.     3516 Apple Mobile Device Service                 
svchost.exe                   3524 CryptSvc                                    
escsvc64.exe                  3532 EpsonScanSvc                                
svchost.exe                   3544 DPS                                         
svchost.exe                   3560 iphlpsvc                                    
svchost.exe                   3580 FDResPub                                    
svchost.exe                   3588 TrkWks                                      
svchost.exe                   3616 stisvc                                      
svchost.exe                   3624 WpnService                                  
svchost.exe                   3632 SstpSvc                                     
svchost.exe                   3648 AppHostSvc                                  
svchost.exe                   3656 DiagTrack                                   
svchost.exe                   3664 DeviceAssociationService                    
EPCP.exe                      3948 EpsonCustomerResearchParticipation          
svchost.exe                   3252 LanmanServer                                
mqsvc.exe                     2624 MSMQ                                        
WUDFHost.exe                  2652 N/A                                         
dasHost.exe                   4112 N/A                                         
svchost.exe                   4128 WdiServiceHost                              
WUDFHost.exe                  4300 N/A                                         
svchost.exe                   4404 SSDPSRV                                     
svchost.exe                   4440 RasMan                                      
SecurityHealthService.exe     4484 SecurityHealthService                       
SearchIndexer.exe             4620 WSearch                                     
Plex Update Service.exe       4628 PlexUpdateService                           
PCPitstopScheduleService.     2448 PCPitstop Scheduling                        
svchost.exe                   5232 PolicyAgent                                 
svchost.exe                   6884 TokenBroker                                 
wmpnetwk.exe                   552 WMPNetworkSvc                               
svchost.exe                    644 TabletInputService                          
svchost.exe                   6480 CDPSvc                                      
GoogleCrashHandler.exe        7052 N/A                                         
GoogleCrashHandler64.exe      4656 N/A                                         
svchost.exe                   2552 LicenseManager                              
svchost.exe                    812 upnphost                                    
svchost.exe                   3684 PcaSvc                                      
svchost.exe                   7332 Appinfo                                     
armsvc.exe                    8052 AdobeARMservice                             
svchost.exe                   8080 BITS                                        
svchost.exe                   3052 UsoSvc                                      
svchost.exe                   4048 DoSvc                                       
svchost.exe                   4744 RmSvc                                       
UpdaterService.exe            7500 Live Updater Service                        
LMS.exe                       8060 LMS                                         
SgrmBroker.exe                1640 SgrmBroker                                  
sqlwriter.exe                 6340 SQLWriter                                   
svchost.exe                   7404 wscsvc                                      
svchost.exe                   7508 Netman                                      
NASvc.exe                     8328 NAUpdate                                    
UNS.exe                       8404 UNS                                         
svchost.exe                   8828 StorSvc                                     
pcmaticrt-setup_3.0.5.0.e     7784 N/A                                         
pcmaticrt-setup_3.0.5.0.t     6504 N/A                                         
PCPitstopRTService.exe        3572 PCPitstop Realtime                          
svchost.exe                   5032 SensorService                               
svchost.exe                   9280 DsSvc                                       
svchost.exe                   6224 BthAvctpSvc                                 
svchost.exe                  14504 wlidsvc                                     
csrss.exe                     2224 N/A                                         
winlogon.exe                  2116 N/A                                         
fontdrvhost.exe              16584 N/A                                         
dwm.exe                       7668 N/A                                         
LogonUI.exe                  12560 N/A                                         
sethc.exe                     4104 N/A                                         
Magnify.exe                  17652 N/A                                         
csrss.exe                     1404 N/A                                         
winlogon.exe                  8872 N/A                                         
fontdrvhost.exe              11036 N/A                                         
dwm.exe                       1236 N/A                                         
svchost.exe                   7528 WinHttpAutoProxySvc                         
svchost.exe                  17340 CDPUserSvc_221b2386                         
svchost.exe                  15864 WpnUserService_221b2386                     
svchost.exe                    500 lmhosts                                     
sihost.exe                     540 N/A                                         
taskhostw.exe                13036 N/A                                         
svchost.exe                  12260 NcdAutoSetup                                
SettingSyncHost.exe          11040 N/A                                         
explorer.exe                  1144 N/A                                         
ctfmon.exe                   15244 N/A                                         
SkypeHost.exe                15836 N/A                                         
svchost.exe                  15868 OneSyncSvc_221b2386,                        
                                   PimIndexMaintenanceSvc_221b2386,            
                                   UnistoreSvc_221b2386, UserDataSvc_221b2386  
RAVCpl64.exe                 13796 N/A                                         
SetPoint.exe                 16808 N/A                                         
igfxtray.exe                  4472 N/A                                         
hkcmd.exe                     2176 N/A                                         
igfxpers.exe                 11260 N/A                                         
Plex Media Server.exe        10484 N/A                                         
E_YATIKDE.EXE                  912 N/A                                         
KHALMNPR.exe                 17804 N/A                                         
CiscoVideoGuardMonitor.ex    11236 N/A                                         
FUFAXRCV.exe                  1560 N/A                                         
FUFAXSTM.exe                 18360 N/A                                         
EEventManager.exe              336 N/A                                         
CCleaner.exe                 17252 N/A                                         
realsched.exe                 7352 N/A                                         
PlexScriptHost.exe           17244 N/A                                         
PCMaticRT.exe                11176 N/A                                         
conhost.exe                   4916 N/A                                         
Plex DLNA Server.exe         13908 N/A                                         
Plex Tuner Service.exe       11912 N/A                                         
conhost.exe                   4568 N/A                                         
WmiPrvSE.exe                 10888 N/A                                         
Microsoft.Photos.exe         18120 N/A                                         
unsecapp.exe                 10504 N/A                                         
RuntimeBroker.exe            15044 N/A                                         
RuntimeBroker.exe             2852 N/A                                         
RuntimeBroker.exe             7236 N/A                                         
ShellExperienceHost.exe       8876 N/A                                         
RuntimeBroker.exe             5280 N/A                                         
SearchUI.exe                  2876 N/A                                         
RuntimeBroker.exe             4032 N/A                                         
ApplicationFrameHost.exe     15416 N/A                                         
SpeechRuntime.exe            13224 N/A                                         
audiodg.exe                   4180 N/A                                         
RemindersServer.exe           1176 N/A                                         
UninstallMonitor.exe          6820 N/A                                         
svchost.exe                  12668 seclogon                                    
chrome.exe                   18372 N/A                                         
chrome.exe                    7848 N/A                                         
chrome.exe                   15500 N/A                                         
chrome.exe                    6096 N/A                                         
chrome.exe                   18396 N/A                                         
chrome.exe                    3268 N/A                                         
chrome.exe                   14164 N/A                                         
chrome.exe                    8868 N/A                                         
chrome.exe                    6880 N/A                                         
chrome.exe                   16840 N/A                                         
chrome.exe                   17600 N/A                                         
chrome.exe                   16328 N/A                                         
chrome.exe                    5244 N/A                                         
chrome.exe                   11704 N/A                                         
chrome.exe                    8760 N/A                                         
chrome.exe                   15948 N/A                                         
chrome.exe                   15544 N/A                                         
chrome.exe                   17380 N/A                                         
chrome.exe                    9884 N/A                                         
chrome.exe                    6668 N/A                                         
chrome.exe                   12636 N/A                                         
chrome.exe                     804 N/A                                         
chrome.exe                   16516 N/A                                         
chrome.exe                   15696 N/A                                         
chrome.exe                   11160 N/A                                         
chrome.exe                    6536 N/A                                         
dllhost.exe                   5200 N/A                                         
dllhost.exe                   7540 N/A                                         
WinStore.App.exe             18080 N/A                                         
RuntimeBroker.exe             8980 N/A                                         
MicrosoftEdge.exe             5756 N/A                                         
browser_broker.exe            9840 N/A                                         
RuntimeBroker.exe            11364 N/A                                         
MicrosoftEdgeCP.exe          12764 N/A                                         
MicrosoftEdgeCP.exe          14060 N/A                                         
MicrosoftEdgeCP.exe           6032 N/A                                         
MicrosoftEdgeCP.exe          17056 N/A                                         
Video.UI.exe                  9612 N/A                                         
SystemSettings.exe            1684 N/A                                         
chrome.exe                   12100 N/A                                         
svchost.exe                   5608 WdiSystemHost                               
Magnify.exe                  14988 N/A                                         
WmiPrvSE.exe                 18180 N/A                                         
smartscreen.exe               3928 N/A                                         
notepad.exe                  15788 N/A                                         
PlexScriptHost.exe           17376 N/A                                         
conhost.exe                  15184 N/A                                         
PlexScriptHost.exe            4228 N/A                                         
conhost.exe                   6036 N/A                                         
svchost.exe                    276 ClipSVC                                     
svchost.exe                  13624 camsvc                                      
svchost.exe                  11980 AppXSvc                                     
backgroundTaskHost.exe        8756 N/A                                         
WmiPrvSE.exe                 12756 N/A                                         
SearchProtocolHost.exe       16448 N/A                                         
SearchFilterHost.exe         16344 N/A                                         
dllhost.exe                  15924 N/A                                         
dllhost.exe                   7612 N/A                                         
cmd.exe                      16436 N/A                                         
conhost.exe                  17548 N/A                                         
tasklist.exe                 17844 N/A                                         

  • 0

Advertisements


#17
dlwtechquest

dlwtechquest

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

VIEW.exe *system *error *warning *log query system  "20"

 

Vino's Event Viewer v01c run on Windows 7 in English
Report run at 08/07/2018 4:13:25 PM
 
Note: All dates below are in the format dd/mm/yyyy
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 08/07/2018 8:46:56 PM
Type: Critical Category: 64
Event: 10116 Source: Microsoft-Windows-DriverFrameworks-UserMode
The device Microsoft Visual Studio Location Simulator Sensor (location (unknown)) is offline due to a user-mode driver crash.  Windows will attempt to restart the device in the shared process 1 more times before moving the device in its own process.  Please contact the device manufacturer for more information about this problem.
 
Log: 'System' Date/Time: 08/07/2018 8:46:56 PM
Type: Critical Category: 64
Event: 10110 Source: Microsoft-Windows-DriverFrameworks-UserMode
A problem has occurred with one or more user-mode drivers and the hosting process has been terminated.  This may temporarily interrupt your ability to access the devices.
 
Log: 'System' Date/Time: 02/07/2018 10:54:23 PM
Type: Critical Category: 64
Event: 10116 Source: Microsoft-Windows-DriverFrameworks-UserMode
The device Microsoft Visual Studio Location Simulator Sensor (location (unknown)) is offline due to a user-mode driver crash.  Windows will attempt to restart the device in the shared process 1 more times before moving the device in its own process.  Please contact the device manufacturer for more information about this problem.
 
Log: 'System' Date/Time: 02/07/2018 10:54:23 PM
Type: Critical Category: 64
Event: 10110 Source: Microsoft-Windows-DriverFrameworks-UserMode
A problem has occurred with one or more user-mode drivers and the hosting process has been terminated.  This may temporarily interrupt your ability to access the devices.
 
Log: 'System' Date/Time: 30/06/2018 1:26:12 AM
Type: Critical Category: 64
Event: 10116 Source: Microsoft-Windows-DriverFrameworks-UserMode
The device Microsoft Visual Studio Location Simulator Sensor (location (unknown)) is offline due to a user-mode driver crash.  Windows will attempt to restart the device in the shared process 1 more times before moving the device in its own process.  Please contact the device manufacturer for more information about this problem.
 
Log: 'System' Date/Time: 30/06/2018 1:26:12 AM
Type: Critical Category: 64
Event: 10110 Source: Microsoft-Windows-DriverFrameworks-UserMode
A problem has occurred with one or more user-mode drivers and the hosting process has been terminated.  This may temporarily interrupt your ability to access the devices.
 
Log: 'System' Date/Time: 29/06/2018 1:56:11 AM
Type: Critical Category: 64
Event: 10116 Source: Microsoft-Windows-DriverFrameworks-UserMode
The device Microsoft Visual Studio Location Simulator Sensor (location (unknown)) is offline due to a user-mode driver crash.  Windows will attempt to restart the device in the shared process 1 more times before moving the device in its own process.  Please contact the device manufacturer for more information about this problem.
 
Log: 'System' Date/Time: 29/06/2018 1:56:11 AM
Type: Critical Category: 64
Event: 10110 Source: Microsoft-Windows-DriverFrameworks-UserMode
A problem has occurred with one or more user-mode drivers and the hosting process has been terminated.  This may temporarily interrupt your ability to access the devices.
 
Log: 'System' Date/Time: 28/06/2018 3:17:14 AM
Type: Critical Category: 64
Event: 10116 Source: Microsoft-Windows-DriverFrameworks-UserMode
The device Microsoft Visual Studio Location Simulator Sensor (location (unknown)) is offline due to a user-mode driver crash.  Windows will attempt to restart the device in the shared process 1 more times before moving the device in its own process.  Please contact the device manufacturer for more information about this problem.
 
Log: 'System' Date/Time: 28/06/2018 3:17:14 AM
Type: Critical Category: 64
Event: 10110 Source: Microsoft-Windows-DriverFrameworks-UserMode
A problem has occurred with one or more user-mode drivers and the hosting process has been terminated.  This may temporarily interrupt your ability to access the devices.
 
Log: 'System' Date/Time: 27/06/2018 1:24:13 PM
Type: Critical Category: 64
Event: 10116 Source: Microsoft-Windows-DriverFrameworks-UserMode
The device Microsoft Visual Studio Location Simulator Sensor (location (unknown)) is offline due to a user-mode driver crash.  Windows will attempt to restart the device in the shared process 1 more times before moving the device in its own process.  Please contact the device manufacturer for more information about this problem.
 
Log: 'System' Date/Time: 27/06/2018 1:24:13 PM
Type: Critical Category: 64
Event: 10110 Source: Microsoft-Windows-DriverFrameworks-UserMode
A problem has occurred with one or more user-mode drivers and the hosting process has been terminated.  This may temporarily interrupt your ability to access the devices.
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 08/07/2018 9:09:52 PM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  and APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  to the user jojo\sadd SID (S-1-5-21-1861271705-2052905311-3892416565-1000) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Log: 'System' Date/Time: 08/07/2018 8:51:45 PM
Type: Error Category: 0
Event: 7022 Source: Service Control Manager
The Delivery Optimization service hung on starting.
 
Log: 'System' Date/Time: 08/07/2018 8:47:36 PM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  and APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Log: 'System' Date/Time: 08/07/2018 8:47:30 PM
Type: Error Category: 0
Event: 7001 Source: Service Control Manager
The NetTcpActivator service depends on the NetTcpPortSharing service which failed to start because of the following error:  The service did not respond to the start or control request in a timely fashion.
 
Log: 'System' Date/Time: 08/07/2018 8:47:30 PM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The NetTcpPortSharing service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.
 
Log: 'System' Date/Time: 08/07/2018 8:47:30 PM
Type: Error Category: 0
Event: 7009 Source: Service Control Manager
A timeout was reached (30000 milliseconds) while waiting for the NetTcpPortSharing service to connect.
 
Log: 'System' Date/Time: 08/07/2018 8:47:08 PM
Type: Error Category: 0
Event: 9006 Source: Microsoft-Windows-IIS-APPHOSTSVC
The Application Host Helper Service encountered an error trying to process the configuration data for config history.  The feature will be disabled.  To resolve this issue, please confirm that the configuration file is correct, has correct attribute values for config history and recommit the changes.  The feature will be enabled again if the configuration is correct.  The data field contains the error number.
 
Log: 'System' Date/Time: 08/07/2018 8:47:08 PM
Type: Error Category: 0
Event: 9000 Source: Microsoft-Windows-IIS-APPHOSTSVC
The Application Host Helper Service encountered an error while reading the data for SID mapping.  Please ensure that the application pool name data is correct in the configuration file.  To resolve this issue, please recommit the changes or restart this service.  The data field contains the error number.
 
Log: 'System' Date/Time: 08/07/2018 8:47:04 PM
Type: Error Category: 0
Event: 7001 Source: Service Control Manager
The NetMsmqActivator service depends on the WAS service which failed to start because of the following error:  The system cannot find the file specified.
 
Log: 'System' Date/Time: 08/07/2018 8:47:04 PM
Type: Error Category: 0
Event: 7001 Source: Service Control Manager
The W3SVC service depends on the WAS service which failed to start because of the following error:  The system cannot find the file specified.
 
Log: 'System' Date/Time: 08/07/2018 8:47:04 PM
Type: Error Category: 0
Event: 7001 Source: Service Control Manager
The NetPipeActivator service depends on the WAS service which failed to start because of the following error:  The system cannot find the file specified.
 
Log: 'System' Date/Time: 08/07/2018 8:47:04 PM
Type: Error Category: 0
Event: 7023 Source: Service Control Manager
The WAS service terminated with the following error:  The system cannot find the file specified.
 
Log: 'System' Date/Time: 08/07/2018 8:47:03 PM
Type: Error Category: 0
Event: 5005 Source: Microsoft-Windows-WAS
Windows Process Activation Service (WAS) is stopping because it encountered an error. The data field contains the error number.
 
Log: 'System' Date/Time: 08/07/2018 8:47:03 PM
Type: Error Category: 0
Event: 5215 Source: Microsoft-Windows-WAS
The Windows Process Activation Service (WAS) failed to execute initialization for offline setup. The data field contains the error number.
 
Log: 'System' Date/Time: 08/07/2018 8:45:08 PM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 08/07/2018 8:45:08 PM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 08/07/2018 8:45:08 PM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 08/07/2018 8:45:08 PM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 08/07/2018 8:45:07 PM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 08/07/2018 8:45:07 PM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 08/07/2018 8:47:34 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name EPSON288953 timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 08/07/2018 8:46:58 PM
Type: Warning Category: 0
Event: 11 Source: Microsoft-Windows-Wininit
Custom dynamic link libraries are being loaded for every application. The system administrator should review the list of libraries to ensure they are related to trusted applications. Please visit http://support.microsoft.com/kb/197571for more information.
 
Log: 'System' Date/Time: 08/07/2018 8:46:20 PM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WudfRd failed to load for the device ROOT\WPD\0000.
 
Log: 'System' Date/Time: 08/07/2018 5:18:45 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 08/07/2018 4:32:14 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 06/07/2018 12:44:51 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 06/07/2018 9:00:28 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 05/07/2018 2:58:37 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 05/07/2018 1:47:05 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 04/07/2018 1:35:28 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 04/07/2018 2:49:04 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name www.sinnandskinn.com timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 03/07/2018 5:10:46 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 02/07/2018 10:54:17 PM
Type: Warning Category: 0
Event: 11 Source: Microsoft-Windows-Wininit
Custom dynamic link libraries are being loaded for every application. The system administrator should review the list of libraries to ensure they are related to trusted applications. Please visit http://support.microsoft.com/kb/197571for more information.
 
Log: 'System' Date/Time: 02/07/2018 10:53:38 PM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WudfRd failed to load for the device ROOT\WPD\0000.
 
Log: 'System' Date/Time: 02/07/2018 2:10:56 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name findmeatune.com timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 01/07/2018 7:18:59 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 01/07/2018 3:27:47 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name costaricaticas.com timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 30/06/2018 5:31:42 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name sexyebony.org timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 30/06/2018 1:43:29 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 30/06/2018 3:08:16 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.

  • 0

#18
dlwtechquest

dlwtechquest

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

VIEW.exe *application *error *warning *log query system  "20"

 

Vino's Event Viewer v01c run on Windows 7 in English
Report run at 08/07/2018 4:13:25 PM
 
Note: All dates below are in the format dd/mm/yyyy
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 08/07/2018 8:46:56 PM
Type: Critical Category: 64
Event: 10116 Source: Microsoft-Windows-DriverFrameworks-UserMode
The device Microsoft Visual Studio Location Simulator Sensor (location (unknown)) is offline due to a user-mode driver crash.  Windows will attempt to restart the device in the shared process 1 more times before moving the device in its own process.  Please contact the device manufacturer for more information about this problem.
 
Log: 'System' Date/Time: 08/07/2018 8:46:56 PM
Type: Critical Category: 64
Event: 10110 Source: Microsoft-Windows-DriverFrameworks-UserMode
A problem has occurred with one or more user-mode drivers and the hosting process has been terminated.  This may temporarily interrupt your ability to access the devices.
 
Log: 'System' Date/Time: 02/07/2018 10:54:23 PM
Type: Critical Category: 64
Event: 10116 Source: Microsoft-Windows-DriverFrameworks-UserMode
The device Microsoft Visual Studio Location Simulator Sensor (location (unknown)) is offline due to a user-mode driver crash.  Windows will attempt to restart the device in the shared process 1 more times before moving the device in its own process.  Please contact the device manufacturer for more information about this problem.
 
Log: 'System' Date/Time: 02/07/2018 10:54:23 PM
Type: Critical Category: 64
Event: 10110 Source: Microsoft-Windows-DriverFrameworks-UserMode
A problem has occurred with one or more user-mode drivers and the hosting process has been terminated.  This may temporarily interrupt your ability to access the devices.
 
Log: 'System' Date/Time: 30/06/2018 1:26:12 AM
Type: Critical Category: 64
Event: 10116 Source: Microsoft-Windows-DriverFrameworks-UserMode
The device Microsoft Visual Studio Location Simulator Sensor (location (unknown)) is offline due to a user-mode driver crash.  Windows will attempt to restart the device in the shared process 1 more times before moving the device in its own process.  Please contact the device manufacturer for more information about this problem.
 
Log: 'System' Date/Time: 30/06/2018 1:26:12 AM
Type: Critical Category: 64
Event: 10110 Source: Microsoft-Windows-DriverFrameworks-UserMode
A problem has occurred with one or more user-mode drivers and the hosting process has been terminated.  This may temporarily interrupt your ability to access the devices.
 
Log: 'System' Date/Time: 29/06/2018 1:56:11 AM
Type: Critical Category: 64
Event: 10116 Source: Microsoft-Windows-DriverFrameworks-UserMode
The device Microsoft Visual Studio Location Simulator Sensor (location (unknown)) is offline due to a user-mode driver crash.  Windows will attempt to restart the device in the shared process 1 more times before moving the device in its own process.  Please contact the device manufacturer for more information about this problem.
 
Log: 'System' Date/Time: 29/06/2018 1:56:11 AM
Type: Critical Category: 64
Event: 10110 Source: Microsoft-Windows-DriverFrameworks-UserMode
A problem has occurred with one or more user-mode drivers and the hosting process has been terminated.  This may temporarily interrupt your ability to access the devices.
 
Log: 'System' Date/Time: 28/06/2018 3:17:14 AM
Type: Critical Category: 64
Event: 10116 Source: Microsoft-Windows-DriverFrameworks-UserMode
The device Microsoft Visual Studio Location Simulator Sensor (location (unknown)) is offline due to a user-mode driver crash.  Windows will attempt to restart the device in the shared process 1 more times before moving the device in its own process.  Please contact the device manufacturer for more information about this problem.
 
Log: 'System' Date/Time: 28/06/2018 3:17:14 AM
Type: Critical Category: 64
Event: 10110 Source: Microsoft-Windows-DriverFrameworks-UserMode
A problem has occurred with one or more user-mode drivers and the hosting process has been terminated.  This may temporarily interrupt your ability to access the devices.
 
Log: 'System' Date/Time: 27/06/2018 1:24:13 PM
Type: Critical Category: 64
Event: 10116 Source: Microsoft-Windows-DriverFrameworks-UserMode
The device Microsoft Visual Studio Location Simulator Sensor (location (unknown)) is offline due to a user-mode driver crash.  Windows will attempt to restart the device in the shared process 1 more times before moving the device in its own process.  Please contact the device manufacturer for more information about this problem.
 
Log: 'System' Date/Time: 27/06/2018 1:24:13 PM
Type: Critical Category: 64
Event: 10110 Source: Microsoft-Windows-DriverFrameworks-UserMode
A problem has occurred with one or more user-mode drivers and the hosting process has been terminated.  This may temporarily interrupt your ability to access the devices.
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 08/07/2018 9:09:52 PM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  and APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  to the user jojo\sadd SID (S-1-5-21-1861271705-2052905311-3892416565-1000) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Log: 'System' Date/Time: 08/07/2018 8:51:45 PM
Type: Error Category: 0
Event: 7022 Source: Service Control Manager
The Delivery Optimization service hung on starting.
 
Log: 'System' Date/Time: 08/07/2018 8:47:36 PM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  and APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Log: 'System' Date/Time: 08/07/2018 8:47:30 PM
Type: Error Category: 0
Event: 7001 Source: Service Control Manager
The NetTcpActivator service depends on the NetTcpPortSharing service which failed to start because of the following error:  The service did not respond to the start or control request in a timely fashion.
 
Log: 'System' Date/Time: 08/07/2018 8:47:30 PM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The NetTcpPortSharing service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.
 
Log: 'System' Date/Time: 08/07/2018 8:47:30 PM
Type: Error Category: 0
Event: 7009 Source: Service Control Manager
A timeout was reached (30000 milliseconds) while waiting for the NetTcpPortSharing service to connect.
 
Log: 'System' Date/Time: 08/07/2018 8:47:08 PM
Type: Error Category: 0
Event: 9006 Source: Microsoft-Windows-IIS-APPHOSTSVC
The Application Host Helper Service encountered an error trying to process the configuration data for config history.  The feature will be disabled.  To resolve this issue, please confirm that the configuration file is correct, has correct attribute values for config history and recommit the changes.  The feature will be enabled again if the configuration is correct.  The data field contains the error number.
 
Log: 'System' Date/Time: 08/07/2018 8:47:08 PM
Type: Error Category: 0
Event: 9000 Source: Microsoft-Windows-IIS-APPHOSTSVC
The Application Host Helper Service encountered an error while reading the data for SID mapping.  Please ensure that the application pool name data is correct in the configuration file.  To resolve this issue, please recommit the changes or restart this service.  The data field contains the error number.
 
Log: 'System' Date/Time: 08/07/2018 8:47:04 PM
Type: Error Category: 0
Event: 7001 Source: Service Control Manager
The NetMsmqActivator service depends on the WAS service which failed to start because of the following error:  The system cannot find the file specified.
 
Log: 'System' Date/Time: 08/07/2018 8:47:04 PM
Type: Error Category: 0
Event: 7001 Source: Service Control Manager
The W3SVC service depends on the WAS service which failed to start because of the following error:  The system cannot find the file specified.
 
Log: 'System' Date/Time: 08/07/2018 8:47:04 PM
Type: Error Category: 0
Event: 7001 Source: Service Control Manager
The NetPipeActivator service depends on the WAS service which failed to start because of the following error:  The system cannot find the file specified.
 
Log: 'System' Date/Time: 08/07/2018 8:47:04 PM
Type: Error Category: 0
Event: 7023 Source: Service Control Manager
The WAS service terminated with the following error:  The system cannot find the file specified.
 
Log: 'System' Date/Time: 08/07/2018 8:47:03 PM
Type: Error Category: 0
Event: 5005 Source: Microsoft-Windows-WAS
Windows Process Activation Service (WAS) is stopping because it encountered an error. The data field contains the error number.
 
Log: 'System' Date/Time: 08/07/2018 8:47:03 PM
Type: Error Category: 0
Event: 5215 Source: Microsoft-Windows-WAS
The Windows Process Activation Service (WAS) failed to execute initialization for offline setup. The data field contains the error number.
 
Log: 'System' Date/Time: 08/07/2018 8:45:08 PM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 08/07/2018 8:45:08 PM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 08/07/2018 8:45:08 PM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 08/07/2018 8:45:08 PM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 08/07/2018 8:45:07 PM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 08/07/2018 8:45:07 PM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 08/07/2018 8:47:34 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name EPSON288953 timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 08/07/2018 8:46:58 PM
Type: Warning Category: 0
Event: 11 Source: Microsoft-Windows-Wininit
Custom dynamic link libraries are being loaded for every application. The system administrator should review the list of libraries to ensure they are related to trusted applications. Please visit http://support.microsoft.com/kb/197571for more information.
 
Log: 'System' Date/Time: 08/07/2018 8:46:20 PM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WudfRd failed to load for the device ROOT\WPD\0000.
 
Log: 'System' Date/Time: 08/07/2018 5:18:45 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 08/07/2018 4:32:14 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 06/07/2018 12:44:51 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 06/07/2018 9:00:28 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 05/07/2018 2:58:37 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 05/07/2018 1:47:05 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 04/07/2018 1:35:28 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 04/07/2018 2:49:04 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name www.sinnandskinn.com timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 03/07/2018 5:10:46 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 02/07/2018 10:54:17 PM
Type: Warning Category: 0
Event: 11 Source: Microsoft-Windows-Wininit
Custom dynamic link libraries are being loaded for every application. The system administrator should review the list of libraries to ensure they are related to trusted applications. Please visit http://support.microsoft.com/kb/197571for more information.
 
Log: 'System' Date/Time: 02/07/2018 10:53:38 PM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WudfRd failed to load for the device ROOT\WPD\0000.
 
Log: 'System' Date/Time: 02/07/2018 2:10:56 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name findmeatune.com timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 01/07/2018 7:18:59 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 01/07/2018 3:27:47 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name costaricaticas.com timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 30/06/2018 5:31:42 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name sexyebony.org timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 30/06/2018 1:43:29 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.
 
Log: 'System' Date/Time: 30/06/2018 3:08:16 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.

  • 0

#19
dlwtechquest

dlwtechquest

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Summary
Operating System
Windows 10 Home 64-bit
CPU
Intel Core i5 2300 @ 2.80GHz 41 °C
Sandy Bridge 32nm Technology
RAM
8.00GB Dual-Channel DDR3 @ 665MHz (9-9-9-24)
Motherboard
Gateway DX4860 (CPU 1) 50 °C
Graphics
Intel HD Graphics (Acer Incorporated [ALI])
Storage
931GB Western Digital WDC WD10EADX-22TDHB0 (SATA ) 43 °C
2794GB Seagate FA GoFlex Desk USB Device (USB (SATA) ) 43 °C
Optical Drives
ATAPI DVD A DH16ABSH
Audio
High Definition Audio Device
Operating System
Windows 10 Home 64-bit
Computer type: Desktop
Installation Date: 5/22/2018 10:01:57 PM
Serial Number: 
Windows Security Center
User Account Control (UAC) Enabled
Notify level 2 - Default
Firewall Enabled
Windows Update
AutoUpdate Not configured
Windows Defender
Windows Defender Disabled
Antivirus
PC Matic Super Shield
Antivirus Enabled
Virus Signature Database Up to date
Windows Defender
Antivirus Disabled
Virus Signature Database Up to date
.NET Frameworks installed
v4.7 Full
v4.7 Client
v3.5 SP1
v3.0 SP2
v2.0 SP2
Internet Explorer
Version 11.112.17134.0
PowerShell
Version 5.1.17134.1
Java
Java Runtime Environment
Path C:\Program Files (x86)\Java\jre1.8.0_171\bin\java.exe
Version 8.0
Update 171
Build 11
Java Runtime Environment
Path C:\Program Files\Java\jre1.8.0_171\bin\java.exe
Version 8.0
Update 171
Build 11
Environment Variables
USERPROFILE C:\Users\sadd
SystemRoot C:\WINDOWS
User Variables
OneDrive C:\Users\sadd\OneDrive
Path C:\Users\sadd\AppData\Local\Microsoft\WindowsApps
TEMP C:\Users\sadd\AppData\Local\Temp
TMP C:\Users\sadd\AppData\Local\Temp
Machine Variables
asl.log Destination=file
ComSpec C:\WINDOWS\system32\cmd.exe
DriverData C:\Windows\System32\Drivers\DriverData
FP_NO_HOST_CHECK NO
NUMBER_OF_PROCESSORS 4
OS Windows_NT
Path C:\Program Files (x86)\Common Files\Oracle\Java\javapath
C:\ProgramData\Oracle\Java\javapath
C:\WINDOWS\system32
C:\WINDOWS
C:\WINDOWS\system32\wbem
C:\Program Files\Common Files\Microsoft Shared\Windows Live
C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live
C:\WINDOWS\System32\WindowsPowerShell\v1.0
C:\Program Files (x86)\Windows Live\Shared
C:\Program Files (x86)\QuickTime\QTSystem
C:\WINDOWS\System32\Wbem
C:\WINDOWS\System32\WindowsPowerShell\v1.0\
C:\Program Files\Microsoft DNX\Dnvm\
C:\Program Files\Microsoft SQL Server\130\Tools\Binn\
C:\Program Files (x86)\QuickTime\QTSystem\
C:\WINDOWS\System32\OpenSSH\
PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
PROCESSOR_ARCHITECTURE AMD64
PROCESSOR_IDENTIFIER Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
PROCESSOR_LEVEL 6
PROCESSOR_REVISION 2a07
PSModulePath C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules\
TEMP C:\WINDOWS\TEMP
TMP C:\WINDOWS\TEMP
USERNAME SYSTEM
VS140COMNTOOLS C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\Tools\
windir C:\WINDOWS
windows_tracing_flags 3
Power Profile
Active power scheme Power saver
Hibernation Enabled
Turn Off Monitor after: (On AC Power) Never
Turn Off Hard Disk after: (On AC Power) 20 min
Suspend after: (On AC Power) 240 min
Screen saver Disabled
Uptime
Current Session
Current Time 7/8/2018 4:26:17 PM
Current Uptime 2,405 sec (0 d, 00 h, 40 m, 05 s)
Last Boot Time 7/8/2018 3:46:12 PM
Services
Running Adobe Acrobat Update Service
Running Apple Mobile Device Service
Running Application Host Helper Service
Running Application Information
Running AppX Deployment Service (AppXSVC)
Running Background Intelligent Transfer Service
Running Background Tasks Infrastructure Service
Running Base Filtering Engine
Running Capability Access Manager Service
Running CDPUserSvc_5ff52
Running Clean Master Core Service
Running CNG Key Isolation
Running COM+ Event System
Running Connected Devices Platform Service
Running Connected User Experiences and Telemetry
Running CoreMessaging
Running Credential Manager
Running Cryptographic Services
Running Data Usage
Running DCOM Server Process Launcher
Running Delivery Optimization
Running Device Association Service
Running DHCP Client
Running Diagnostic Policy Service
Running Diagnostic Service Host
Running Diagnostic System Host
Running Distributed Link Tracking Client
Running DNS Client
Running Epson Scanner Service
Running EpsonCustomerResearchParticipation
Running Function Discovery Resource Publication
Running Geolocation Service
Running Human Interface Device Service
Running Intel Management and Security Application Local Management Service
Running Intel Management and Security Application User Notification Service
Running IP Helper
Running IPsec Policy Agent
Running Live Updater Service
Running Local Session Manager
Running Message Queuing
Running Microsoft Account Sign-in Assistant
Running Nero Update
Running Net Driver HPZ12
Running Network Connected Devices Auto-Setup
Running Network Connection Broker
Running Network Connections
Running Network List Service
Running Network Location Awareness
Running Network Setup Service
Running Network Store Interface Service
Running OneSyncSvc_5ff52
Running PCPitstop Realtime
Running PCPitstop Scheduling
Running Peer Name Resolution Protocol
Running Peer Networking Identity Manager
Running Phone Service
Running PimIndexMaintenanceSvc_5ff52
Running Plex Update Service
Running Plug and Play
Running Pml Driver HPZ12
Running Power
Running Print Spooler
Running PrintWorkflowUserSvc_5ff52
Running Program Compatibility Assistant Service
Running Remote Access Connection Manager
Running Remote Desktop Configuration
Running Remote Desktop Services
Running Remote Procedure Call (RPC)
Running RPC Endpoint Mapper
Running Secure Socket Tunneling Protocol Service
Running Security Accounts Manager
Running Security Center
Running Sensor Service
Running Server
Running Shell Hardware Detection
Running Spybot-S&D 2 Updating Service
Running SQL Server VSS Writer
Running SSDP Discovery
Running State Repository Service
Running Storage Service
Running Superfetch
Running System Event Notification Service
Running System Events Broker
Running System Guard Runtime Monitor Broker
Running Task Scheduler
Running TCP/IP NetBIOS Helper
Running Themes
Running Time Broker
Running Touch Keyboard and Handwriting Panel Service
Running UnistoreSvc_5ff52
Running Update Orchestrator Service
Running UPnP Device Host
Running User Manager
Running User Profile Service
Running UserDataSvc_5ff52
Running Web Account Manager
Running Windows Audio
Running Windows Audio Endpoint Builder
Running Windows Connection Manager
Running Windows Defender Firewall
Running Windows Defender Security Center Service
Running Windows Error Reporting Service
Running Windows Event Log
Running Windows Font Cache Service
Running Windows Image Acquisition (WIA)
Running Windows License Manager Service
Running Windows Management Instrumentation
Running Windows Media Player Network Sharing Service
Running Windows Push Notifications System Service
Running Windows Search
Running WinHTTP Web Proxy Auto-Discovery Service
Running WLAN AutoConfig
Running Workstation
Running WpnUserService_5ff52
Stopped ActiveX Installer (AxInstSV)
Stopped Adobe Flash Player Update Service
Stopped AllJoyn Router Service
Stopped App Readiness
Stopped Application Identity
Stopped Application Layer Gateway Service
Stopped ASP.NET State Service
Stopped Auto Time Zone Updater
Stopped AVCTP service
Stopped BcastDVRUserService_5ff52
Stopped BitLocker Drive Encryption Service
Stopped Block Level Backup Engine Service
Stopped Bluetooth Audio Gateway Service
Stopped Bluetooth Support Service
Stopped BluetoothUserService_5ff52
Stopped Certificate Propagation
Stopped Client License Service (ClipSVC)
Stopped COM+ System Application
Stopped Data Sharing Service
Stopped Device Install Service
Stopped Device Management Enrollment Service
Stopped Device Setup Manager
Stopped DevicePickerUserSvc_5ff52
Stopped DevicesFlowUserSvc_5ff52
Stopped DevQuery Background Discovery Broker
Stopped Diagnostic Execution Service
Stopped Distributed Transaction Coordinator
Stopped dmwappushsvc
Stopped Downloaded Maps Manager
Stopped Embedded Mode
Stopped Encrypting File System (EFS)
Stopped Enterprise App Management Service
Stopped Extensible Authentication Protocol
Stopped Fax
Stopped File History Service
Stopped Function Discovery Provider Host
Stopped Google Software Updater
Stopped Google Update Service (gupdate)
Stopped Google Update Service (gupdatem)
Stopped GraphicsPerfSvc
Stopped Group Policy Client
Stopped GSService
Stopped HV Host Service
Stopped Hyper-V Data Exchange Service
Stopped Hyper-V Guest Service Interface
Stopped Hyper-V Guest Shutdown Service
Stopped Hyper-V Heartbeat Service
Stopped Hyper-V PowerShell Direct Service
Stopped Hyper-V Remote Desktop Virtualization Service
Stopped Hyper-V Time Synchronization Service
Stopped Hyper-V Volume Shadow Copy Requestor
Stopped IKE and AuthIP IPsec Keying Modules
Stopped Infrared monitor service
Stopped Intel Content Protection HECI Service
Stopped Internet Connection Sharing (ICS)
Stopped IObit Uninstaller Service
Stopped IP Translation Configuration Service
Stopped iPod Service
Stopped KtmRm for Distributed Transaction Coordinator
Stopped Language Experience Service
Stopped Link-Layer Topology Discovery Mapper
Stopped Local Profile Assistant Service
Stopped Logitech Bluetooth Service
Stopped MessagingService_5ff52
Stopped Microsoft Diagnostics Hub Standard Collector Service
Stopped Microsoft iSCSI Initiator Service
Stopped Microsoft Passport
Stopped Microsoft Passport Container
Stopped Microsoft Software Shadow Copy Provider
Stopped Microsoft Storage Spaces SMP
Stopped Microsoft Store Install Service
Stopped Microsoft Windows SMS Router Service.
Stopped Mozilla Maintenance Service
Stopped MxService
Stopped Natural Authentication
Stopped Net.Msmq Listener Adapter
Stopped Net.Pipe Listener Adapter
Stopped Net.Tcp Listener Adapter
Stopped Net.Tcp Port Sharing Service
Stopped Netlogon
Stopped Network Connectivity Assistant
Stopped OpenSSH Authentication Agent
Stopped Optimize drives
Stopped Parental Controls
Stopped Payments and NFC/SE Manager
Stopped Peer Networking Grouping
Stopped Performance Counter DLL Host
Stopped Performance Logs & Alerts
Stopped PNRP Machine Name Publication Service
Stopped Portable Device Enumerator Service
Stopped Printer Extensions and Notifications
Stopped Problem Reports and Solutions Control Panel Support
Stopped Quality Windows Audio Video Experience
Stopped Radio Management Service
Stopped RealNetworks Downloader Resolver Service
Stopped RealPlayer Update Service
Stopped Remote Access Auto Connection Manager
Stopped Remote Desktop Services UserMode Port Redirector
Stopped Remote Procedure Call (RPC) Locator
Stopped Remote Registry
Stopped Retail Demo Service
Stopped Routing and Remote Access
Stopped Secondary Logon
Stopped Sensor Data Service
Stopped Sensor Monitoring Service
Stopped Shared PC Account Manager
Stopped Smart Card
Stopped Smart Card Device Enumeration Service
Stopped Smart Card Removal Policy
Stopped SNMP Trap
Stopped Software Protection
Stopped Spatial Data Service
Stopped Spot Verifier
Stopped Still Image Acquisition Events
Stopped Storage Tiers Management
Stopped Telephony
Stopped Virtual Disk
Stopped Visual Studio Standard Collector Service
Stopped Volume Shadow Copy
Stopped Volumetric Audio Compositor Service
Stopped W3C Logging Service
Stopped WalletService
Stopped WarpJITSvc
Stopped WebClient
Stopped Wi-Fi Direct Services Connection Manager Service
Stopped Windows Backup
Stopped Windows Biometric Service
Stopped Windows Camera Frame Server
Stopped Windows Connect Now - Config Registrar
Stopped Windows Defender Antivirus Network Inspection Service
Stopped Windows Defender Antivirus Service
Stopped Windows Encryption Provider Host Service
Stopped Windows Event Collector
Stopped Windows Insider Service
Stopped Windows Installer
Stopped Windows Live Mesh remote connections service
Stopped Windows Mobile Hotspot Service
Stopped Windows Modules Installer
Stopped Windows Perception Service
Stopped Windows Presentation Foundation Font Cache 3.0.0.0
Stopped Windows Process Activation Service
Stopped Windows PushToInstall Service
Stopped Windows Remote Management (WS-Management)
Stopped Windows Time
Stopped Windows Update
Stopped Windows Update Medic Service
Stopped Wired AutoConfig
Stopped WMI Performance Adapter
Stopped Work Folders
Stopped World Wide Web Publishing Service
Stopped WWAN AutoConfig
Stopped Xbox Accessory Management Service
Stopped Xbox Game Monitoring
Stopped Xbox Live Auth Manager
Stopped Xbox Live Game Save
Stopped Xbox Live Networking Service
TimeZone
TimeZone GMT -6:00 Hours
Language English (United States)
Location United States
Format English (United States)
Currency $
Date Format M/d/yyyy
Time Format h:mm:ss tt
Scheduler
7/8/2018 4:32 PM; Maxthon5 Update
7/8/2018 4:42 PM; GoogleUpdateTaskMachineUA
7/8/2018 5:05 PM; Adobe Flash Player Updater
7/8/2018 11:42 PM; GoogleUpdateTaskMachineCore
7/9/2018 12:00 AM; Adobe Acrobat Update Task
7/9/2018 10:57 AM; OneDrive Standalone Update Task-S-1-5-21-1861271705-2052905311-3892416565-1003
7/9/2018 10:22 PM; OneDrive Standalone Update Task-S-1-5-21-1861271705-2052905311-3892416565-1000
7/13/2018 7:30 PM; Adobe Flash Player NPAPI Notifier
CCleanerSkipUAC
Uninstaller_SkipUac_sadd
System Folders
Application Data C:\ProgramData
Cookies C:\Users\sadd\AppData\Local\Microsoft\Windows\INetCookies
Desktop C:\Users\sadd\Desktop
Documents C:\Users\Public\Documents
Fonts C:\WINDOWS\Fonts
Global Favorites C:\Users\sadd\Favorites
Internet History C:\Users\sadd\AppData\Local\Microsoft\Windows\History
Local Application Data C:\Users\sadd\AppData\Local
Music C:\Users\Public\Music
Path for burning CD C:\Users\sadd\AppData\Local\Microsoft\Windows\Burn\Burn
Physical Desktop C:\Users\sadd\Desktop
Pictures C:\Users\Public\Pictures
Program Files C:\Program Files
Public Desktop C:\Users\Public\Desktop
Start Menu C:\ProgramData\Microsoft\Windows\Start Menu
Start Menu Programs C:\ProgramData\Microsoft\Windows\Start Menu\Programs
Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Templates C:\ProgramData\Microsoft\Windows\Templates
Temporary Internet Files C:\Users\sadd\AppData\Local\Microsoft\Windows\INetCache
User Favorites C:\Users\sadd\Favorites
Videos C:\Users\Public\Videos
Windows Directory C:\WINDOWS
Windows/System C:\WINDOWS\system32
Process List
AppleMobileDeviceService.exe
Process ID 3792
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
Memory Usage 13 MB
Peak Memory Usage 13 MB
ApplicationFrameHost.exe
Process ID 4396
User sadd
Domain JOJO
Path C:\Windows\System32\ApplicationFrameHost.exe
Memory Usage 45 MB
Peak Memory Usage 47 MB
armsvc.exe
Process ID 2440
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
Memory Usage 14 MB
Peak Memory Usage 16 MB
audiodg.exe
Process ID 5940
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\audiodg.exe
Memory Usage 17 MB
Peak Memory Usage 18 MB
backgroundTaskHost.exe
Process ID 5544
User sadd
Domain JOJO
Path C:\Windows\System32\backgroundTaskHost.exe
Memory Usage 24 MB
Peak Memory Usage 44 MB
browser_broker.exe
Process ID 9360
User sadd
Domain JOJO
Path C:\Windows\System32\browser_broker.exe
Memory Usage 34 MB
Peak Memory Usage 34 MB
CCleaner.exe
Process ID 4196
User sadd
Domain JOJO
Path C:\Program Files\CCleaner\CCleaner.exe
Memory Usage 42 MB
Peak Memory Usage 42 MB
chrome.exe
Process ID 7664
User sadd
Domain JOJO
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 12 MB
Peak Memory Usage 42 MB
chrome.exe
Process ID 5668
User sadd
Domain JOJO
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 97 MB
Peak Memory Usage 114 MB
chrome.exe
Process ID 7340
User sadd
Domain JOJO
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 34 MB
Peak Memory Usage 35 MB
chrome.exe
Process ID 10968
User sadd
Domain JOJO
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 37 MB
Peak Memory Usage 39 MB
chrome.exe
Process ID 10680
User sadd
Domain JOJO
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 21 MB
Peak Memory Usage 21 MB
chrome.exe
Process ID 8432
User sadd
Domain JOJO
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 35 MB
Peak Memory Usage 37 MB
chrome.exe
Process ID 5216
User sadd
Domain JOJO
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 93 MB
Peak Memory Usage 141 MB
chrome.exe
Process ID 7504
User sadd
Domain JOJO
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 32 MB
Peak Memory Usage 33 MB
chrome.exe
Process ID 5912
User sadd
Domain JOJO
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 69 MB
Peak Memory Usage 157 MB
chrome.exe
Process ID 5492
User sadd
Domain JOJO
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 13 MB
Peak Memory Usage 43 MB
CiscoVideoGuardMonitor.exe
Process ID 9428
User sadd
Domain JOJO
Path C:\Users\sadd\AppData\Local\Cisco\VideoGuardPlayer\VideoGuardMonitor\CiscoVideoGuardMonitor.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
cmcore.exe
Process ID 3244
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\cmcm\Clean Master\cmcore.exe
Memory Usage 6.60 MB
Peak Memory Usage 16 MB
conhost.exe
Process ID 1580
User sadd
Domain JOJO
Path C:\Windows\System32\conhost.exe
Memory Usage 5.59 MB
Peak Memory Usage 5.66 MB
conhost.exe
Process ID 2712
User sadd
Domain JOJO
Path C:\Windows\System32\conhost.exe
Memory Usage 6.94 MB
Peak Memory Usage 6.97 MB
csrss.exe
Process ID 548
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\csrss.exe
Memory Usage 5.21 MB
Peak Memory Usage 5.31 MB
csrss.exe
Process ID 644
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\csrss.exe
Memory Usage 5.91 MB
Peak Memory Usage 14 MB
ctfmon.exe
Process ID 6476
User sadd
Domain JOJO
Path C:\Windows\System32\ctfmon.exe
Memory Usage 15 MB
Peak Memory Usage 15 MB
dasHost.exe
Process ID 3924
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\dasHost.exe
Memory Usage 19 MB
Peak Memory Usage 22 MB
dllhost.exe
Process ID 7220
User sadd
Domain JOJO
Path C:\Windows\System32\dllhost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
dwm.exe
Process ID 1060
User DWM-1
Domain Window Manager
Path C:\Windows\System32\dwm.exe
Memory Usage 77 MB
Peak Memory Usage 94 MB
EEventManager.exe
Process ID 5148
User sadd
Domain JOJO
Path C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
Memory Usage 12 MB
Peak Memory Usage 12 MB
EPCP.exe
Process ID 3940
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe
Memory Usage 14 MB
Peak Memory Usage 24 MB
escsvc64.exe
Process ID 3732
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\escsvc64.exe
Memory Usage 7.33 MB
Peak Memory Usage 7.67 MB
explorer.exe
Process ID 3692
User sadd
Domain JOJO
Path C:\Windows\explorer.exe
Memory Usage 139 MB
Peak Memory Usage 153 MB
fontdrvhost.exe
Process ID 948
User UMFD-0
Domain Font Driver Host
Path C:\Windows\System32\fontdrvhost.exe
Memory Usage 7.26 MB
Peak Memory Usage 7.26 MB
fontdrvhost.exe
Process ID 940
User UMFD-1
Domain Font Driver Host
Path C:\Windows\System32\fontdrvhost.exe
Memory Usage 6.69 MB
Peak Memory Usage 6.74 MB
FUFAXRCV.exe
Process ID 8656
User sadd
Domain JOJO
Path C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXRCV.exe
Memory Usage 15 MB
Peak Memory Usage 16 MB
FUFAXSTM.exe
Process ID 5228
User sadd
Domain JOJO
Path C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXSTM.exe
Memory Usage 19 MB
Peak Memory Usage 23 MB
GoogleCrashHandler.exe
Process ID 11024
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe
Memory Usage 320 KB
Peak Memory Usage 6.16 MB
GoogleCrashHandler64.exe
Process ID 10492
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe
Memory Usage 120 KB
Peak Memory Usage 5.71 MB
hkcmd.exe
Process ID 10068
User sadd
Domain JOJO
Path C:\Windows\System32\hkcmd.exe
Memory Usage 8.27 MB
Peak Memory Usage 8.32 MB
igfxpers.exe
Process ID 10172
User sadd
Domain JOJO
Path C:\Windows\System32\igfxpers.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
igfxtray.exe
Process ID 10044
User sadd
Domain JOJO
Path C:\Windows\System32\igfxtray.exe
Memory Usage 8.49 MB
Peak Memory Usage 8.53 MB
KHALMNPR.exe
Process ID 4740
User sadd
Domain JOJO
Path C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe
Memory Usage 12 MB
Peak Memory Usage 12 MB
LMS.exe
Process ID 10180
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Intel\Intel Management Engine Components\LMS\LMS.exe
Memory Usage 5.96 MB
Peak Memory Usage 5.96 MB
LocationNotificationWindows.exe
Process ID 8552
User sadd
Domain JOJO
Path C:\Windows\System32\LocationNotificationWindows.exe
Memory Usage 324 KB
Peak Memory Usage 6.65 MB
lsass.exe
Process ID 732
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\lsass.exe
Memory Usage 23 MB
Peak Memory Usage 23 MB
Magnify.exe
Process ID 12032
User sadd
Domain JOJO
Path C:\Windows\System32\Magnify.exe
Memory Usage 21 MB
Peak Memory Usage 21 MB
Memory Compression
Process ID 1908
User SYSTEM
Domain NT AUTHORITY
Memory Usage 14 MB
Peak Memory Usage 76 MB
Microsoft.Photos.exe
Process ID 7908
User sadd
Domain JOJO
Path C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15914.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
Memory Usage 329 MB
Peak Memory Usage 372 MB
MicrosoftEdge.exe
Process ID 4456
User sadd
Domain JOJO
Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
Memory Usage 120 MB
Peak Memory Usage 135 MB
MicrosoftEdgeCP.exe
Process ID 2548
User sadd
Domain JOJO
Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
Memory Usage 25 MB
Peak Memory Usage 25 MB
MicrosoftEdgeCP.exe
Process ID 10052
User sadd
Domain JOJO
Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
Memory Usage 147 MB
Peak Memory Usage 322 MB
MicrosoftEdgeCP.exe
Process ID 2432
User sadd
Domain JOJO
Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
Memory Usage 25 MB
Peak Memory Usage 34 MB
MicrosoftEdgeCP.exe
Process ID 9776
User sadd
Domain JOJO
Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
Memory Usage 69 MB
Peak Memory Usage 78 MB
MicrosoftEdgeCP.exe
Process ID 3240
User sadd
Domain JOJO
Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
Memory Usage 233 MB
Peak Memory Usage 521 MB
MicrosoftEdgeCP.exe
Process ID 11384
User sadd
Domain JOJO
Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
Memory Usage 25 MB
Peak Memory Usage 25 MB
MicrosoftEdgeCP.exe
Process ID 6564
User sadd
Domain JOJO
Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
Memory Usage 25 MB
Peak Memory Usage 25 MB
mqsvc.exe
Process ID 4060
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\mqsvc.exe
Memory Usage 13 MB
Peak Memory Usage 13 MB
NASvc.exe
Process ID 10228
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Nero\Update\NASvc.exe
Memory Usage 9.83 MB
Peak Memory Usage 10 MB
PCMaticRT.exe
Process ID 8088
User sadd
Domain JOJO
Path C:\Program Files (x86)\PCPitstop\Super Shield\PCMaticRT.exe
Memory Usage 9.14 MB
Peak Memory Usage 9.19 MB
PCPitstopRTService.exe
Process ID 3884
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\PCPitstop\Super Shield\PCPitstopRTService.exe
Memory Usage 87 MB
Peak Memory Usage 227 MB
PCPitstopScheduleService.exe
Process ID 4788
User PCPitstopSVC
Domain jojo
Path C:\Program Files (x86)\PCPitstop\PCPitstopScheduleService.exe
Memory Usage 6.72 MB
Peak Memory Usage 6.74 MB
Plex DLNA Server.exe
Process ID 10416
User sadd
Domain JOJO
Path C:\Program Files (x86)\Plex\Plex Media Server\Plex DLNA Server.exe
Memory Usage 35 MB
Peak Memory Usage 36 MB
Plex Media Server.exe
Process ID 7580
User sadd
Domain JOJO
Path C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe
Memory Usage 52 MB
Peak Memory Usage 53 MB
Plex Tuner Service.exe
Process ID 10524
User sadd
Domain JOJO
Path C:\Program Files (x86)\Plex\Plex Media Server\Plex Tuner Service.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
Plex Update Service.exe
Process ID 3900
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Plex\Plex Media Server\Plex Update Service.exe
Memory Usage 8.73 MB
Peak Memory Usage 8.90 MB
PlexScriptHost.exe
Process ID 4948
User sadd
Domain JOJO
Path C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe
Memory Usage 35 MB
Peak Memory Usage 36 MB
RAVCpl64.exe
Process ID 9996
User sadd
Domain JOJO
Path C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
Memory Usage 16 MB
Peak Memory Usage 17 MB
Registry
Process ID 96
User SYSTEM
Domain NT AUTHORITY
Memory Usage 43 MB
Peak Memory Usage 146 MB
RemindersServer.exe
Process ID 10092
User sadd
Domain JOJO
Path C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
Memory Usage 13 MB
Peak Memory Usage 14 MB
RuntimeBroker.exe
Process ID 11048
User sadd
Domain JOJO
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 16 MB
Peak Memory Usage 20 MB
RuntimeBroker.exe
Process ID 9992
User sadd
Domain JOJO
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 8.30 MB
Peak Memory Usage 11 MB
RuntimeBroker.exe
Process ID 4752
User sadd
Domain JOJO
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 22 MB
Peak Memory Usage 31 MB
RuntimeBroker.exe
Process ID 1140
User sadd
Domain JOJO
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 32 MB
Peak Memory Usage 33 MB
RuntimeBroker.exe
Process ID 4400
User sadd
Domain JOJO
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 23 MB
Peak Memory Usage 32 MB
RuntimeBroker.exe
Process ID 4588
User sadd
Domain JOJO
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 8.32 MB
Peak Memory Usage 8.71 MB
RuntimeBroker.exe
Process ID 8272
User sadd
Domain JOJO
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 47 MB
Peak Memory Usage 61 MB
RuntimeBroker.exe
Process ID 5004
User sadd
Domain JOJO
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 34 MB
Peak Memory Usage 34 MB
SDUpdSvc.exe
Process ID 3948
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
Memory Usage 18 MB
Peak Memory Usage 18 MB
SearchFilterHost.exe
Process ID 6796
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SearchFilterHost.exe
Memory Usage 6.19 MB
Peak Memory Usage 6.19 MB
SearchIndexer.exe
Process ID 3916
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SearchIndexer.exe
Memory Usage 47 MB
Peak Memory Usage 47 MB
SearchProtocolHost.exe
Process ID 852
User sadd
Domain JOJO
Path C:\Windows\System32\SearchProtocolHost.exe
Memory Usage 7.64 MB
Peak Memory Usage 7.71 MB
SearchProtocolHost.exe
Process ID 11284
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SearchProtocolHost.exe
Memory Usage 18 MB
Peak Memory Usage 19 MB
SearchUI.exe
Process ID 1924
User sadd
Domain JOJO
Path C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
Memory Usage 122 MB
Peak Memory Usage 144 MB
SecurityHealthService.exe
Process ID 3908
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SecurityHealthService.exe
Memory Usage 13 MB
Peak Memory Usage 14 MB
services.exe
Process ID 704
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\services.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
SetPoint.exe
Process ID 10012
User sadd
Domain JOJO
Path C:\Program Files\Logitech\SetPointP\SetPoint.exe
Memory Usage 30 MB
Peak Memory Usage 34 MB
SettingSyncHost.exe
Process ID 9552
User sadd
Domain JOJO
Path C:\Windows\System32\SettingSyncHost.exe
Memory Usage 7.86 MB
Peak Memory Usage 59 MB
SgrmBroker.exe
Process ID 6584
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SgrmBroker.exe
Memory Usage 4.04 MB
Peak Memory Usage 4.70 MB
ShellExperienceHost.exe
Process ID 7760
User sadd
Domain JOJO
Path C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
Memory Usage 76 MB
Peak Memory Usage 88 MB
sihost.exe
Process ID 6556
User sadd
Domain JOJO
Path C:\Windows\System32\sihost.exe
Memory Usage 27 MB
Peak Memory Usage 27 MB
SkypeHost.exe
Process ID 444
User sadd
Domain JOJO
Path C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\SkypeHost.exe
Memory Usage 30 MB
Peak Memory Usage 64 MB
smartscreen.exe
Process ID 3812
User sadd
Domain JOJO
Path C:\Windows\System32\smartscreen.exe
Memory Usage 62 MB
Peak Memory Usage 68 MB
smss.exe
Process ID 376
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\smss.exe
Memory Usage 1.08 MB
Peak Memory Usage 1.13 MB
Speccy64.exe
Process ID 5168
User sadd
Domain JOJO
Path C:\Program Files\Speccy\Speccy64.exe
Memory Usage 38 MB
Peak Memory Usage 38 MB
SpeechRuntime.exe
Process ID 8304
User sadd
Domain JOJO
Path C:\Windows\System32\Speech_OneCore\common\SpeechRuntime.exe
Memory Usage 26 MB
Peak Memory Usage 26 MB
splwow64.exe
Process ID 1360
User sadd
Domain JOJO
Path C:\Windows\splwow64.exe
Memory Usage 3.36 MB
Peak Memory Usage 21 MB
spoolsv.exe
Process ID 3440
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\spoolsv.exe
Memory Usage 22 MB
Peak Memory Usage 22 MB
sqlwriter.exe
Process ID 10324
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
Memory Usage 7.65 MB
Peak Memory Usage 7.77 MB
svchost.exe
Process ID 2840
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 7400
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 1560
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 15 MB
Peak Memory Usage 15 MB
svchost.exe
Process ID 912
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 3.89 MB
Peak Memory Usage 3.97 MB
svchost.exe
Process ID 8464
User sadd
Domain JOJO
Path C:\Windows\System32\svchost.exe
Memory Usage 27 MB
Peak Memory Usage 29 MB
svchost.exe
Process ID 956
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 26 MB
Peak Memory Usage 27 MB
svchost.exe
Process ID 6884
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 20 MB
Peak Memory Usage 21 MB
svchost.exe
Process ID 516
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 14 MB
Peak Memory Usage 14 MB
svchost.exe
Process ID 616
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.16 MB
Peak Memory Usage 9.18 MB
svchost.exe
Process ID 1228
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.20 MB
Peak Memory Usage 8.64 MB
svchost.exe
Process ID 1256
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 24 MB
Peak Memory Usage 28 MB
svchost.exe
Process ID 1308
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.65 MB
Peak Memory Usage 6.67 MB
svchost.exe
Process ID 1380
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.42 MB
Peak Memory Usage 9.55 MB
svchost.exe
Process ID 1400
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 1496
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 20 MB
Peak Memory Usage 23 MB
svchost.exe
Process ID 5964
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 17 MB
Peak Memory Usage 17 MB
svchost.exe
Process ID 1504
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.13 MB
Peak Memory Usage 6.17 MB
svchost.exe
Process ID 1640
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.93 MB
Peak Memory Usage 9.93 MB
svchost.exe
Process ID 4512
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 17 MB
svchost.exe
Process ID 1656
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 1680
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 89 MB
Peak Memory Usage 111 MB
svchost.exe
Process ID 1692
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.74 MB
Peak Memory Usage 5.79 MB
svchost.exe
Process ID 1700
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.82 MB
Peak Memory Usage 7.86 MB
svchost.exe
Process ID 1876
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.18 MB
Peak Memory Usage 9.28 MB
svchost.exe
Process ID 9888
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 16 MB
Peak Memory Usage 16 MB
svchost.exe
Process ID 1888
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.34 MB
Peak Memory Usage 8.42 MB
svchost.exe
Process ID 1900
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.55 MB
Peak Memory Usage 7.62 MB
svchost.exe
Process ID 1992
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.80 MB
Peak Memory Usage 9.10 MB
svchost.exe
Process ID 10700
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 28 MB
Peak Memory Usage 43 MB
svchost.exe
Process ID 2004
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.66 MB
Peak Memory Usage 7.75 MB
svchost.exe
Process ID 1356
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 2064
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.73 MB
Peak Memory Usage 8.78 MB
svchost.exe
Process ID 2076
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.21 MB
Peak Memory Usage 8.33 MB
svchost.exe
Process ID 2164
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 17 MB
Peak Memory Usage 19 MB
svchost.exe
Process ID 2172
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.36 MB
Peak Memory Usage 9.48 MB
svchost.exe
Process ID 10984
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.67 MB
Peak Memory Usage 7.75 MB
svchost.exe
Process ID 2268
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.07 MB
Peak Memory Usage 9.15 MB
svchost.exe
Process ID 2472
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.52 MB
Peak Memory Usage 7.98 MB
svchost.exe
Process ID 2552
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.07 MB
Peak Memory Usage 9.23 MB
svchost.exe
Process ID 2800
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 19 MB
Peak Memory Usage 23 MB
svchost.exe
Process ID 6844
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.47 MB
Peak Memory Usage 8.56 MB
svchost.exe
Process ID 3064
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 18 MB
svchost.exe
Process ID 5188
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.70 MB
Peak Memory Usage 9.72 MB
svchost.exe
Process ID 2020
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 17 MB
Peak Memory Usage 17 MB
svchost.exe
Process ID 2728
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.43 MB
Peak Memory Usage 6.45 MB
svchost.exe
Process ID 2668
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 11164
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 3216
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 3540
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.87 MB
Peak Memory Usage 7.13 MB
svchost.exe
Process ID 3696
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 16 MB
svchost.exe
Process ID 3712
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 23 MB
Peak Memory Usage 73 MB
svchost.exe
Process ID 3720
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 3752
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.50 MB
Peak Memory Usage 5.55 MB
svchost.exe
Process ID 3772
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.65 MB
Peak Memory Usage 5.70 MB
svchost.exe
Process ID 6668
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.52 MB
Peak Memory Usage 7.54 MB
svchost.exe
Process ID 3784
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 19 MB
Peak Memory Usage 20 MB
svchost.exe
Process ID 3800
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 3816
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 29 MB
Peak Memory Usage 30 MB
svchost.exe
Process ID 192
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 3824
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.58 MB
Peak Memory Usage 6.68 MB
svchost.exe
Process ID 3004
User sadd
Domain JOJO
Path C:\Windows\System32\svchost.exe
Memory Usage 6.89 MB
Peak Memory Usage 6.95 MB
svchost.exe
Process ID 3840
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.44 MB
Peak Memory Usage 5.50 MB
svchost.exe
Process ID 10028
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.96 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 10536
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.34 MB
Peak Memory Usage 5.39 MB
svchost.exe
Process ID 3848
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 10 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 5800
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.18 MB
Peak Memory Usage 6.54 MB
svchost.exe
Process ID 3856
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.75 MB
Peak Memory Usage 10 MB
svchost.exe
Process ID 4244
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.05 MB
Peak Memory Usage 6.09 MB
svchost.exe
Process ID 2196
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 14 MB
Peak Memory Usage 14 MB
svchost.exe
Process ID 4444
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.02 MB
Peak Memory Usage 9.10 MB
svchost.exe
Process ID 4500
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.90 MB
Peak Memory Usage 8.96 MB
svchost.exe
Process ID 5040
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 5204
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.88 MB
Peak Memory Usage 8.71 MB
svchost.exe
Process ID 5836
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.96 MB
Peak Memory Usage 6.04 MB
svchost.exe
Process ID 5804
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 1324
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.13 MB
Peak Memory Usage 8.21 MB
svchost.exe
Process ID 6036
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.28 MB
Peak Memory Usage 6.34 MB
svchost.exe
Process ID 6524
User sadd
Domain JOJO
Path C:\Windows\System32\svchost.exe
Memory Usage 26 MB
Peak Memory Usage 27 MB
svchost.exe
Process ID 6692
User sadd
Domain JOJO
Path C:\Windows\System32\svchost.exe
Memory Usage 35 MB
Peak Memory Usage 38 MB
svchost.exe
Process ID 7100
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 14 MB
Peak Memory Usage 16 MB
svchost.exe
Process ID 6184
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.83 MB
Peak Memory Usage 8.01 MB
System
Process ID 4
Memory Usage 19 MB
Peak Memory Usage 22 MB
System Idle Process
Process ID 0
SystemSettings.exe
Process ID 10756
User sadd
Domain JOJO
Path C:\Windows\ImmersiveControlPanel\SystemSettings.exe
Memory Usage 44 MB
Peak Memory Usage 72 MB
taskhostw.exe
Process ID 7000
User sadd
Domain JOJO
Path C:\Windows\System32\taskhostw.exe
Memory Usage 15 MB
Peak Memory Usage 18 MB
UNS.exe
Process ID 11168
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Intel\Intel Management Engine Components\UNS\UNS.exe
Memory Usage 9.63 MB
Peak Memory Usage 9.75 MB
unsecapp.exe
Process ID 11000
User sadd
Domain JOJO
Path C:\Windows\System32\wbem\unsecapp.exe
Memory Usage 6.84 MB
Peak Memory Usage 6.98 MB
UpdaterService.exe
Process ID 6768
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe
Memory Usage 6.52 MB
Peak Memory Usage 6.61 MB
Video.UI.exe
Process ID 6220
User sadd
Domain JOJO
Path C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
Memory Usage 31 MB
Peak Memory Usage 56 MB
wininit.exe
Process ID 624
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\wininit.exe
Memory Usage 6.59 MB
Peak Memory Usage 6.71 MB
winlogon.exe
Process ID 796
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\winlogon.exe
Memory Usage 12 MB
Peak Memory Usage 20 MB
WinStore.App.exe
Process ID 9280
User sadd
Domain JOJO
Path C:\Program Files\WindowsApps\Microsoft.WindowsStore_11805.1001.42.0_x64__8wekyb3d8bbwe\WinStore.App.exe
Memory Usage 59 MB
Peak Memory Usage 86 MB
WmiPrvSE.exe
Process ID 9432
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\wbem\WmiPrvSE.exe
Memory Usage 29 MB
Peak Memory Usage 39 MB
WmiPrvSE.exe
Process ID 1348
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\wbem\WmiPrvSE.exe
Memory Usage 37 MB
Peak Memory Usage 38 MB
WmiPrvSE.exe
Process ID 7716
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\wbem\WmiPrvSE.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
wmpnetwk.exe
Process ID 6812
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Program Files\Windows Media Player\wmpnetwk.exe
Memory Usage 26 MB
Peak Memory Usage 26 MB
WUDFHost.exe
Process ID 344
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\WUDFHost.exe
Memory Usage 8.34 MB
Peak Memory Usage 8.47 MB
WUDFHost.exe
Process ID 2764
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\WUDFHost.exe
Memory Usage 8.27 MB
Peak Memory Usage 8.27 MB
Security Options
Accounts: Administrator account status Disabled
Accounts: Block Microsoft accounts Not Defined
Accounts: Guest account status Disabled
Accounts: Limit local account use of blank passwords to console logon only Enabled
Accounts: Rename administrator account Administrator
Accounts: Rename guest account Guest
Audit: Audit the access of global system objects Disabled
Audit: Audit the use of Backup and Restore privilege Disabled
Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings Not Defined
Audit: Shut down system immediately if unable to log security audits Disabled
DCOM: Machine Access Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined
DCOM: Machine Launch Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined
Devices: Allow undock without having to log on Enabled
Devices: Allowed to format and eject removable media Not Defined
Devices: Prevent users from installing printer drivers Disabled
Devices: Restrict CD-ROM access to locally logged-on user only Not Defined
Devices: Restrict floppy access to locally logged-on user only Not Defined
Domain controller: Allow server operators to schedule tasks Not Defined
Domain controller: LDAP server signing requirements Not Defined
Domain controller: Refuse machine account password changes Not Defined
Domain member: Digitally encrypt or sign secure channel data (always) Enabled
Domain member: Digitally encrypt secure channel data (when possible) Enabled
Domain member: Digitally sign secure channel data (when possible) Enabled
Domain member: Disable machine account password changes Disabled
Domain member: Maximum machine account password age 30 days
Domain member: Require strong (Windows 2000 or later) session key Enabled
Interactive logon: Display user information when the session is locked Not Defined
Interactive logon: Do not require CTRL+ALT+DEL Not Defined
Interactive logon: Don't display last signed-in Disabled
Interactive logon: Don't display username at sign-in Not Defined
Interactive logon: Machine account lockout threshold Not Defined
Interactive logon: Machine inactivity limit Not Defined
Interactive logon: Message text for users attempting to log on
Interactive logon: Message title for users attempting to log on
Interactive logon: Number of previous logons to cache (in case domain controller is not available) 10 logons
Interactive logon: Prompt user to change password before expiration 5 days
Interactive logon: Require Domain Controller authentication to unlock workstation Disabled
Interactive logon: Require Windows Hello for Business or smart card Disabled
Interactive logon: Smart card removal behavior No Action
Microsoft network client: Digitally sign communications (always) Disabled
Microsoft network client: Digitally sign communications (if server agrees) Enabled
Microsoft network client: Send unencrypted password to third-party SMB servers Disabled
Microsoft network server: Amount of idle time required before suspending session Not Defined
Microsoft network server: Attempt S4U2Self to obtain claim information Not Defined
Microsoft network server: Digitally sign communications (always) Disabled
Microsoft network server: Digitally sign communications (if client agrees) Disabled
Microsoft network server: Disconnect clients when logon hours expire Enabled
Microsoft network server: Server SPN target name validation level Not Defined
Network access: Allow anonymous SID/Name translation Disabled
Network access: Do not allow anonymous enumeration of SAM accounts Enabled
Network access: Do not allow anonymous enumeration of SAM accounts and shares Disabled
Network access: Do not allow storage of passwords and credentials for network authentication Disabled
Network access: Let Everyone permissions apply to anonymous users Disabled
Network access: Named Pipes that can be accessed anonymously
Network access: Remotely accessible registry paths System\CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server Applications,Software\Microsoft\Windows NT\CurrentVersion
Network access: Remotely accessible registry paths and sub-paths System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\SysmonLog
Network access: Restrict anonymous access to Named Pipes and Shares Enabled
Network access: Restrict clients allowed to make remote calls to SAM
Network access: Shares that can be accessed anonymously Not Defined
Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves
Network security: Allow Local System to use computer identity for NTLM Not Defined
Network security: Allow LocalSystem NULL session fallback Not Defined
Network security: Allow PKU2U authentication requests to this computer to use online identities.
 
Not Defined
Network security: Configure encryption types allowed for Kerberos Not Defined
Network security: Do not store LAN Manager hash value on next password change Enabled
Network security: Force logoff when logon hours expire Disabled
Network security: LAN Manager authentication level Not Defined
Network security: LDAP client signing requirements Negotiate signing
Network security: Minimum session security for NTLM SSP based (including secure RPC) clients Require 128-bit encryption
Network security: Minimum session security for NTLM SSP based (including secure RPC) servers Require 128-bit encryption
Network security: Restrict NTLM: Add remote server exceptions for NTLM authentication Not Defined
Network security: Restrict NTLM: Add server exceptions in this domain Not Defined
Network security: Restrict NTLM: Audit Incoming NTLM Traffic Not Defined
Network security: Restrict NTLM: Audit NTLM authentication in this domain Not Defined
Network security: Restrict NTLM: Incoming NTLM traffic Not Defined
Network security: Restrict NTLM: NTLM authentication in this domain Not Defined
Network security: Restrict NTLM: Outgoing NTLM traffic to remote servers Not Defined
Recovery console: Allow automatic administrative logon Not Defined
Recovery console: Allow floppy copy and access to all drives and all folders Not Defined
Shutdown: Allow system to be shut down without having to log on Enabled
Shutdown: Clear virtual memory pagefile Disabled
System cryptography: Force strong key protection for user keys stored on the computer Not Defined
System cryptography: Use FIPS compliant algorithms for encryption, hashing, and signing Disabled
System objects: Require case insensitivity for non-Windows subsystems Enabled
System objects: Strengthen default permissions of internal system objects (e.g. Symbolic Links) Enabled
System settings: Optional subsystems Posix
System settings: Use Certificate Rules on Windows Executables for Software Restriction Policies Disabled
User Account Control: Admin Approval Mode for the Built-in Administrator account Not Defined
User Account Control: Allow UIAccess applications to prompt for elevation without using the secure desktop Disabled
User Account Control: Behavior of the elevation prompt for administrators in Admin Approval Mode Prompt for consent for non-Windows binaries
User Account Control: Behavior of the elevation prompt for standard users Prompt for credentials
User Account Control: Detect application installations and prompt for elevation Enabled
User Account Control: Only elevate executables that are signed and validated Disabled
User Account Control: Only elevate UIAccess applications that are installed in secure locations Enabled
User Account Control: Run all administrators in Admin Approval Mode Enabled
User Account Control: Switch to the secure desktop when prompting for elevation Enabled
User Account Control: Virtualize file and registry write failures to per-user locations Enabled
Device Tree
ACPI x64-based PC
Microsoft ACPI-Compliant System
ACPI Fixed Feature Button
ACPI Power Button
Intel Core i5-2300 CPU @ 2.80GHz
Intel Core i5-2300 CPU @ 2.80GHz
Intel Core i5-2300 CPU @ 2.80GHz
Intel Core i5-2300 CPU @ 2.80GHz
Microsoft Windows Management Interface for ACPI
Motherboard resources
System board
PCI Express Root Complex
2nd generation Intel Core processor family DRAM Controller - 0100
High precision event timer
Intel 6 Series/C200 Series Chipset Family PCI Express Root Port 1 - 1C10
Intel 6 Series/C200 Series Chipset Family SMBus Controller - 1C22
Intel Management Engine Interface
Motherboard resources
System board
System board
Intel® HD Graphics
Generic PnP Monitor
Intel® 6 Series/C200 Series Chipset Family USB Enhanced Host Controller - 1C2D
USB Root Hub
Generic USB Hub
USB Composite Device
USB Input Device (Logitech Download Assistant)
HID Keyboard Device
USB Input Device
HID-compliant consumer control device
HID-compliant mouse
HID-compliant system controller
HID-compliant vendor-defined device
Logitech Unifying USB receiver
Logitech HID-compliant Unifying device
HID-compliant vendor-defined device
HID-compliant vendor-defined device
Logitech HID-compliant Unifying device
Logitech HID-compliant Unifying keyboard
Logitech Driver Interface
HID-compliant consumer control device
Logitech Driver Interface
HID-compliant device
Logitech Driver Interface
Logitech HID-compliant Unifying device
Logitech HID-compliant Unifying Mouse
Logitech Driver Interface
Logitech Driver Interface
Logitech HID-compliant Unifying device
Logitech HID-compliant Unifying keyboard
Logitech Driver Interface
Logitech HID-compliant Unifying Mouse
Logitech Driver Interface
Logitech Driver Interface
HID-compliant consumer control device
Logitech Driver Interface
HID-compliant device
Logitech Driver Interface
Intel® 6 Series/C200 Series Chipset Family High Definition Audio - 1C20
Realtek High Definition Audio
FrontMic (Realtek High Definition Audio)
Speakers (Realtek High Definition Audio)
High Definition Audio Device
LG TV (High Definition Audio Device)
Intel® 6 Series/C200 Series Chipset Family PCI Express Root Port 4 - 1C16
802.11n Wireless LAN Card
Intel® 6 Series/C200 Series Chipset Family PCI Express Root Port 6 - 1C1A
Realtek PCIe GBE Family Controller
Intel® 6 Series/C200 Series Chipset Family USB Enhanced Host Controller - 1C26
USB Root Hub
Generic USB Hub
USB Composite Device
C-Media USB Audio Device   
Microphone (C-Media USB Audio Device )
Speakers (C-Media USB Audio Device )
USB Input Device
HID-compliant consumer control device
USB Mass Storage Device
Seagate FA GoFlex Desk USB Device
USB Composite Device
USB Mass Storage Device
Generic Mini SD Reader USB Device
Generic USB CF Reader USB Device
Generic USB MS Reader USB Device
Generic USB SD Reader USB Device
Generic USB xD/SM Reader USB Device
USB Input Device
HID-compliant vendor-defined device
Intel® H67 Express Chipset Family LPC Interface Controller - 1C4A
Direct memory access controller
Motherboard resources
Motherboard resources
Numeric data processor
Programmable interrupt controller
System CMOS/real time clock
System speaker
System timer
Intel® 6 Series/C200 Series Chipset Family 6 Port SATA AHCI Controller - 1C02
ATAPI DVD A DH16ABSH
WDC WD10EADX-22TDHB0
CPU
Intel Core i5 2300
Cores 4
Threads 4
Name Intel Core i5 2300
Code Name Sandy Bridge
Package Socket 1155 LGA
Technology 32nm
Specification Intel Core i5-2300 CPU @ 2.80GHz
Family 6
Extended Family 6
Model A
Extended Model 2A
Stepping 7
Revision D2
Instructions MMX, SSE, SSE2, SSE3, SSSE3, SSE4.1, SSE4.2, Intel 64, NX, VMX, AVX
Virtualization Supported, Enabled
Hyperthreading Not supported
Fan Speed 1117 RPM
Bus Speed 99.8 MHz
Stock Core Speed 2800 MHz
Stock Bus Speed 100 MHz
Average Temperature 41 °C
Caches
L1 Data Cache Size 4 x 32 KBytes
L1 Instructions Cache Size 4 x 32 KBytes
L2 Unified Cache Size 4 x 256 KBytes
L3 Unified Cache Size 6144 KBytes
Cores
Core 0
Core Speed 1596.2 MHz
Multiplier x 16.0
Bus Speed 99.8 MHz
Temperature 41 °C
Threads APIC ID: 0
Core 1
Core Speed 1596.2 MHz
Multiplier x 16.0
Bus Speed 99.8 MHz
Temperature 43 °C
Threads APIC ID: 2
Core 2
Core Speed 1596.2 MHz
Multiplier x 16.0
Bus Speed 99.8 MHz
Temperature 39 °C
Threads APIC ID: 4
Core 3
Core Speed 1596.2 MHz
Multiplier x 16.0
Bus Speed 99.8 MHz
Temperature 42 °C
Threads APIC ID: 6
RAM
Memory slots
Total memory slots 4
Used memory slots 4
Free memory slots 0
Memory
Type DDR3
Size 8192 MBytes
Channels # Dual
DRAM Frequency 665.1 MHz
CAS# Latency (CL) 9 clocks
RAS# to CAS# Delay (tRCD) 9 clocks
RAS# Precharge (tRP) 9 clocks
Cycle Time (tRAS) 24 clocks
Command Rate (CR) 2T
Physical Memory
Memory Usage 38 %
Total Physical 7.91 GB
Available Physical 4.85 GB
Total Virtual 23 GB
Available Virtual 19 GB
SPD
Number Of SPD Modules 4
Slot #1
Type DDR3
Size 2048 MBytes
Manufacturer Unknown
Max Bandwidth PC3-10700 (667 MHz)
Part Number GU512303EP0202
Week/year 12 / 11
Timing table
JEDEC #1
Frequency 457.1 MHz
CAS# Latency 6.0
RAS# To CAS# 6
RAS# Precharge 6
tRAS 17
tRC 23
Voltage 1.500 V
JEDEC #2
Frequency 533.3 MHz
CAS# Latency 7.0
RAS# To CAS# 7
RAS# Precharge 7
tRAS 20
tRC 27
Voltage 1.500 V
JEDEC #3
Frequency 609.5 MHz
CAS# Latency 8.0
RAS# To CAS# 8
RAS# Precharge 8
tRAS 22
tRC 30
Voltage 1.500 V
JEDEC #4
Frequency 666.7 MHz
CAS# Latency 9.0
RAS# To CAS# 9
RAS# Precharge 9
tRAS 24
tRC 33
Voltage 1.500 V
Slot #2
Type DDR3
Size 2048 MBytes
Manufacturer Unknown
Max Bandwidth PC3-10700 (667 MHz)
Part Number GU512303EP0202
Week/year 09 / 11
Timing table
JEDEC #1
Frequency 457.1 MHz
CAS# Latency 6.0
RAS# To CAS# 6
RAS# Precharge 6
tRAS 17
tRC 23
Voltage 1.500 V
JEDEC #2
Frequency 533.3 MHz
CAS# Latency 7.0
RAS# To CAS# 7
RAS# Precharge 7
tRAS 20
tRC 27
Voltage 1.500 V
JEDEC #3
Frequency 609.5 MHz
CAS# Latency 8.0
RAS# To CAS# 8
RAS# Precharge 8
tRAS 22
tRC 30
Voltage 1.500 V
JEDEC #4
Frequency 666.7 MHz
CAS# Latency 9.0
RAS# To CAS# 9
RAS# Precharge 9
tRAS 24
tRC 33
Voltage 1.500 V
Slot #3
Type DDR3
Size 2048 MBytes
Manufacturer Unknown
Max Bandwidth PC3-10700 (667 MHz)
Part Number GU512303EP0202
Week/year 12 / 11
Timing table
JEDEC #1
Frequency 457.1 MHz
CAS# Latency 6.0
RAS# To CAS# 6
RAS# Precharge 6
tRAS 17
tRC 23
Voltage 1.500 V
JEDEC #2
Frequency 533.3 MHz
CAS# Latency 7.0
RAS# To CAS# 7
RAS# Precharge 7
tRAS 20
tRC 27
Voltage 1.500 V
JEDEC #3
Frequency 609.5 MHz
CAS# Latency 8.0
RAS# To CAS# 8
RAS# Precharge 8
tRAS 22
tRC 30
Voltage 1.500 V
JEDEC #4
Frequency 666.7 MHz
CAS# Latency 9.0
RAS# To CAS# 9
RAS# Precharge 9
tRAS 24
tRC 33
Voltage 1.500 V
Slot #4
Type DDR3
Size 2048 MBytes
Manufacturer Unknown
Max Bandwidth PC3-10700 (667 MHz)
Part Number GU512303EP0202
Week/year 09 / 11
Timing table
JEDEC #1
Frequency 457.1 MHz
CAS# Latency 6.0
RAS# To CAS# 6
RAS# Precharge 6
tRAS 17
tRC 23
Voltage 1.500 V
JEDEC #2
Frequency 533.3 MHz
CAS# Latency 7.0
RAS# To CAS# 7
RAS# Precharge 7
tRAS 20
tRC 27
Voltage 1.500 V
JEDEC #3
Frequency 609.5 MHz
CAS# Latency 8.0
RAS# To CAS# 8
RAS# Precharge 8
tRAS 22
tRC 30
Voltage 1.500 V
JEDEC #4
Frequency 666.7 MHz
CAS# Latency 9.0
RAS# To CAS# 9
RAS# Precharge 9
tRAS 24
tRC 33
Voltage 1.500 V
Motherboard
Manufacturer Gateway
Model DX4860 (CPU 1)
Chipset Vendor Intel
Chipset Model Sandy Bridge
Chipset Revision 09
Southbridge Vendor Intel
Southbridge Model H67
Southbridge Revision B3
System Temperature 50 °C
BIOS
Brand American Megatrends Inc.
Version P01-A2
Date 4/7/2011
Voltage
CPU CORE 0.972 V
MEMORY CONTROLLER 2.220 V
+3.3V 2.892 V
+5V 4.939 V
+12V 11.808 V
-12V -8.880 V
-5V -8.880 V
+5V HIGH THRESHOLD 2.802 V
PCI Data
Slot PCI-E
Slot Type PCI-E
Slot Usage Available
Data lanes x16
Slot Designation PCIE4
Characteristics 3.3V, Shared, PME
Slot Number 0
Slot PCI-E
Slot Type PCI-E
Slot Usage Available
Data lanes x1
Slot Designation PCIE3
Characteristics 3.3V, Shared, PME
Slot Number 1
Slot PCI-E
Slot Type PCI-E
Slot Usage In Use
Data lanes x1
Slot Designation PCIE2
Characteristics 3.3V, Shared, PME
Slot Number 2
Slot PCI-E
Slot Type PCI-E
Slot Usage Available
Data lanes x1
Slot Designation PCIE1
Characteristics 3.3V, Shared, PME
Slot Number 3
Graphics
Monitor
Name LG TV on Intel HD Graphics
Current Resolution 1280x720 pixels
Work Resolution 1280x680 pixels
State Enabled, Primary, Output devices support
Monitor Width 1920
Monitor Height 1080
Monitor BPP 32 bits per pixel
Monitor Frequency 59 Hz
Device \\.\DISPLAY1\Monitor0
Intel HD Graphics
Manufacturer Intel
Model HD Graphics
Device ID 8086-0102
Revision A
Subvendor Acer Incorporated [ALI] (1025)
Current Performance Level Level 0
Current GPU Clock 847 MHz
Technology 32 nm
Driver version 9.17.10.4459
Count of performance levels : 1
Level 1 - "Perf Level 0"
GPU Clock 850 MHz
Storage
Hard drives
WDC WD10EADX-22TDHB0
Manufacturer Western Digital
Heads 16
Cylinders 121,601
Tracks 31,008,255
Sectors 1,953,520,065
SATA type SATA-III 6.0Gb/s
Device type Fixed
ATA Standard ATA8-ACS
Serial Number WD-WCAV5S215831
Firmware Version Number 77.04D77
LBA Size 48-bit LBA
Power On Count 6599 times
Power On Time 1267.5 days
Features S.M.A.R.T., AAM, NCQ
Max. Transfer Mode SATA III 6.0Gb/s
Used Transfer Mode SATA III 6.0Gb/s
Interface SATA
Capacity 931 GB
Real size 1,000,204,886,016 bytes
RAID Type None
S.M.A.R.T
Status Good
Temperature 43 °C
Temperature Range OK (less than 50 °C)
S.M.A.R.T attributes
01
Attribute name Read Error Rate
Real value 0
Current 200
Worst 200
Threshold 51
Raw Value 00000000CA
Status Good
03
Attribute name Spin-Up Time
Real value 6433 ms
Current 191
Worst 188
Threshold 21
Raw Value 0000001921
Status Good
04
Attribute name Start/Stop Count
Real value 6,603
Current 94
Worst 94
Threshold 0
Raw Value 00000019CB
Status Good
05
Attribute name Reallocated Sectors Count
Real value 0
Current 200
Worst 200
Threshold 140
Raw Value 0000000000
Status Good
07
Attribute name Seek Error Rate
Real value 0
Current 200
Worst 200
Threshold 0
Raw Value 0000000000
Status Good
09
Attribute name Power-On Hours (POH)
Real value 1267d 13h
Current 59
Worst 59
Threshold 0
Raw Value 00000076D5
Status Good
0A
Attribute name Spin Retry Count
Real value 0
Current 100
Worst 100
Threshold 0
Raw Value 0000000000
Status Good
0B
Attribute name Recalibration Retries
Real value 0
Current 100
Worst 100
Threshold 0
Raw Value 0000000000
Status Good
0C
Attribute name Device Power Cycle Count
Real value 6,599
Current 94
Worst 94
Threshold 0
Raw Value 00000019C7
Status Good
C0
Attribute name Power-off Retract Count
Real value 131
Current 200
Worst 200
Threshold 0
Raw Value 0000000083
Status Good
C1
Attribute name Load/Unload Cycle Count
Real value 234,092
Current 122
Worst 122
Threshold 0
Raw Value 000003926C
Status Good
C2
Attribute name Temperature
Real value 43 °C
Current 104
Worst 100
Threshold 0
Raw Value 000000002B
Status Good
C4
Attribute name Reallocation Event Count
Real value 0
Current 200
Worst 200
Threshold 0
Raw Value 0000000000
Status Good
C5
Attribute name Current Pending Sector Count
Real value 4
Current 200
Worst 200
Threshold 0
Raw Value 0000000004
Status Good
C6
Attribute name Uncorrectable Sector Count
Real value 4
Current 200
Worst 200
Threshold 0
Raw Value 0000000004
Status Good
C7
Attribute name UltraDMA CRC Error Count
Real value 0
Current 200
Worst 200
Threshold 0
Raw Value 0000000000
Status Good
C8
Attribute name Write Error Rate / Multi-Zone Error Rate
Real value 5
Current 200
Worst 200
Threshold 0
Raw Value 0000000005
Status Good
Partition 0
Partition ID Disk #0, Partition #0
File System NTFS
Volume Serial Number EE49498E
Size 14 GB
Used Space 8.68 GB (62%)
Free Space 5.32 GB (38%)
Partition 1
Partition ID Disk #0, Partition #1
File System NTFS
Volume Serial Number D449F018
Size 99 MB
Used Space 36.1 MB (36%)
Free Space 63 MB (64%)
Partition 2
Partition ID Disk #0, Partition #2
Disk Letter C:
File System NTFS
Volume Serial Number D44B2F11
Size 916 GB
Used Space 582 GB (63%)
Free Space 334 GB (37%)
Partition 3
Partition ID Disk #0, Partition #3
File System NTFS
Volume Serial Number BA20BD6D
Size 449 MB
Used Space 390 MB (86%)
Free Space 59 MB (14%)
Seagate FA GoFlex Desk USB Device
Heads 16
Cylinders 45,600
Tracks 11,628,000
Sectors 732,564,000
SATA type SATA-III 6.0Gb/s
Device type Fixed
ATA Standard ATA8-ACS
Serial Number WD-WCAV5S215831
Firmware Version Number 77.04D77
LBA Size 48-bit LBA
Power On Count 6599 times
Power On Time 1267.5 days
Features S.M.A.R.T., AAM, NCQ
Max. Transfer Mode SATA III 6.0Gb/s
Used Transfer Mode SATA III 6.0Gb/s
Interface USB (SATA)
Capacity 2794 GB
Real size 3,000,592,977,920 bytes
RAID Type None
S.M.A.R.T
Status Good
Temperature 43 °C
Temperature Range OK (less than 50 °C)
S.M.A.R.T attributes
01
Attribute name Read Error Rate
Real value 0
Current 200
Worst 200
Threshold 51
Raw Value 00000000CA
Status Good
03
Attribute name Spin-Up Time
Real value 6433 ms
Current 191
Worst 188
Threshold 21
Raw Value 0000001921
Status Good
04
Attribute name Start/Stop Count
Real value 6,603
Current 94
Worst 94
Threshold 0
Raw Value 00000019CB
Status Good
05
Attribute name Reallocated Sectors Count
Real value 0
Current 200
Worst 200
Threshold 140
Raw Value 0000000000
Status Good
07
Attribute name Seek Error Rate
Real value 0
Current 200
Worst 200
Threshold 0
Raw Value 0000000000
Status Good
09
Attribute name Power-On Hours (POH)
Real value 1267d 13h
Current 59
Worst 59
Threshold 0
Raw Value 00000076D5
Status Good
0A
Attribute name Spin Retry Count
Real value 0
Current 100
Worst 100
Threshold 0
Raw Value 0000000000
Status Good
0B
Attribute name Recalibration Retries
Real value 0
Current 100
Worst 100
Threshold 0
Raw Value 0000000000
Status Good
0C
Attribute name Device Power Cycle Count
Real value 6,599
Current 94
Worst 94
Threshold 0
Raw Value 00000019C7
Status Good
C0
Attribute name Power-off Retract Count
Real value 131
Current 200
Worst 200
Threshold 0
Raw Value 0000000083
Status Good
C1
Attribute name Load/Unload Cycle Count
Real value 234,092
Current 122
Worst 122
Threshold 0
Raw Value 000003926C
Status Good
C2
Attribute name Temperature
Real value 43 °C
Current 104
Worst 100
Threshold 0
Raw Value 000000002B
Status Good
C4
Attribute name Reallocation Event Count
Real value 0
Current 200
Worst 200
Threshold 0
Raw Value 0000000000
Status Good
C5
Attribute name Current Pending Sector Count
Real value 4
Current 200
Worst 200
Threshold 0
Raw Value 0000000004
Status Good
C6
Attribute name Uncorrectable Sector Count
Real value 4
Current 200
Worst 200
Threshold 0
Raw Value 0000000004
Status Good
C7
Attribute name UltraDMA CRC Error Count
Real value 0
Current 200
Worst 200
Threshold 0
Raw Value 0000000000
Status Good
C8
Attribute name Write Error Rate / Multi-Zone Error Rate
Real value 5
Current 200
Worst 200
Threshold 0
Raw Value 0000000005
Status Good
Partition 0
Partition ID Disk #1, Partition #0
Disk Letter K:
File System NTFS
Volume Serial Number 683DB76B
Size 2794 GB
Used Space 729 GB (26%)
Free Space 2064 GB (74%)
Optical Drives
ATAPI DVD A  DH16ABSH
Media Type DVD Writer
Name ATAPI DVD A DH16ABSH
Availability Running/Full Power
Capabilities Random Access, Supports Writing, Supports Removable Media
Read capabilities CD-R, CD-RW, CD-ROM, DVD-RAM, DVD-ROM, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-R DL, DVD+R DL
Write capabilities CD-R, CD-RW, DVD-RAM, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-R DL, DVD+R DL
Config Manager Error Code Device is working properly
Config Manager User Config FALSE
Drive D:
Media Loaded TRUE
SCSI Bus 4
SCSI Logical Unit 0
SCSI Port 0
SCSI Target Id 0
Size
Status OK
Volume Name Audio CD
Volume Serial Number 2166E83
Audio
Sound Cards
USB Audio Device
High Definition Audio Device
Realtek High Definition Audio
SndTAudio
Digital Video Recorder
WsAudioDevice_383
Playback Devices
Speakers (SndTAudio)
Speakers (C-Media USB Audio Device )
Speakers (Realtek High Definition Audio)
Speakers (WsAudioDevice_383)
LG TV (High Definition Audio Device) (default)
Speaker (Digital Video Recorder)
Recording Devices
Line in (Digital Video Recorder)
FrontMic (Realtek High Definition Audio)
Microphone (Digital Video Recorder)
Microphone (C-Media USB Audio Device ) (default)
Line (WsAudioDevice_383)
Peripherals
Logitech HID-compliant Unifying keyboard
Device Kind Keyboard
Device Name Logitech HID-compliant Unifying keyboard
Vendor Logitech
Location Location 1
Driver
Date 6-9-2015
Version 5.90.38.0
File C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
File C:\WINDOWS\system32\DRIVERS\kbdhid.sys
File C:\WINDOWS\system32\DRIVERS\kbdclass.sys
File C:\WINDOWS\system32\LkmdfCoInst.dll
HID Keyboard Device
Device Kind Keyboard
Device Name HID Keyboard Device
Vendor Logitech
Location USB Input Device (Logitech Download Assistant)
Driver
Date 6-21-2006
Version 10.0.17134.1
File C:\WINDOWS\system32\DRIVERS\kbdhid.sys
File C:\WINDOWS\system32\DRIVERS\kbdclass.sys
Logitech HID-compliant Unifying keyboard
Device Kind Keyboard
Device Name Logitech HID-compliant Unifying keyboard
Vendor Logitech
Location Location 3
Driver
Date 6-9-2015
Version 5.90.38.0
File C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
File C:\WINDOWS\system32\DRIVERS\kbdhid.sys
File C:\WINDOWS\system32\DRIVERS\kbdclass.sys
File C:\WINDOWS\system32\LkmdfCoInst.dll
Logitech HID-compliant Unifying Mouse
Device Kind Mouse
Device Name Logitech HID-compliant Unifying Mouse
Vendor Logitech
Location Location 3
Driver
Date 6-9-2015
Version 5.90.38.0
File C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
File C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
File C:\WINDOWS\system32\DRIVERS\mouhid.sys
File C:\WINDOWS\system32\DRIVERS\mouclass.sys
File C:\WINDOWS\system32\LkmdfCoInst.dll
File C:\WINDOWS\system32\LMouFiltCoInst.dll
Logitech HID-compliant Unifying Mouse
Device Kind Mouse
Device Name Logitech HID-compliant Unifying Mouse
Vendor Logitech
Location Location 2
Driver
Date 6-9-2015
Version 5.90.38.0
File C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
File C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
File C:\WINDOWS\system32\DRIVERS\mouhid.sys
File C:\WINDOWS\system32\DRIVERS\mouclass.sys
File C:\WINDOWS\system32\LkmdfCoInst.dll
File C:\WINDOWS\system32\LMouFiltCoInst.dll
HID-compliant mouse
Device Kind Mouse
Device Name HID-compliant mouse
Vendor Logitech
Location USB Input Device
Driver
Date 6-21-2006
Version 10.0.17134.1
File C:\WINDOWS\system32\DRIVERS\mouhid.sys
File C:\WINDOWS\system32\DRIVERS\mouclass.sys
EPSON WF-3620 Series
Device Kind Printer
Device Name EPSON WF-3620 Series
Vendor EPSON
Location EPSON21294B (WF-3620 Series)
Driver
Date 7-22-2015
Version 2.32.0.0
File C:\WINDOWS\system32\E_GCINST.DLL
File C:\WINDOWS\system32\spool\drivers\color\Epson IJ Printer 07.icc
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YMAIKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YDSPKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YJBCKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YUMRKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YBN0KEE.BIN
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YCONKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YAUDKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YREDKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_WATO46.EXE
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YTSKEE.EXE
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YTSKEE.DAT
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YTNTKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TTN1KEE.PTN
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TTN2KEE.PTN
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TTN3KEE.PTN
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TTN4KEE.PTN
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TTN5KEE.PTN
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TTN6KEE.PTN
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YVIFKEE.VIF
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YUICKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YUIRKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YUI1KEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YUIPKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TCXKEA.CFX
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TCXKEE.CFX
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TCXKEE.USX
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TCXKEE.DCX
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TCF0KEE.DEV
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YGRCKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YPRUKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YPREKEE.EXE
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YLMWKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YLC1KEE.LMC
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YLC2KEE.LMC
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YDHRKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YDHIKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_THLPVKEE.CHM
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_THLMPKEE.CHM
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TPLWKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YPLWKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YJACKEE.EXE
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YJARKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TJAHKEE.CHM
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\EPSET32.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\EPSET64.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\EPDI2X86.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\EPDI2X64.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YHM0KEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YSR0KEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YHUTKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YHUTKEE.EXE
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YHSRKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YINSKEE.EXE
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YINSKEE.DAT
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YINSKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YARNKEE.EXE
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YASKKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YAPRKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YATIKEE.EXE
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YASRKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YBCSKEE.EXE
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YAIFKEE.DAT
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YGEPKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YASOKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_S60RPB.EXE
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YALSKEE.STR
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YAUTKEE.UDC
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_THLIAKEE.CHM
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TINVKEE.EXE
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TINVKEE.CFG
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YLGRKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TBA7KEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YBA7KEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TBL6KEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YBL6KEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TBIDKEE.LMD
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TBEWKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YBEWKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_TERSKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YERSKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\ENAGENT.EXE
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\ENSETAG6.DLL
File C:\WINDOWS\system32\E_YLMBKEE.DLL
File C:\WINDOWS\system32\E_YD4BKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YUBKEE.EXE
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YURKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YUWKEE.DLL
File C:\WINDOWS\system32\spool\DRIVERS\x64\{C9ABB0ED-CB94-4D54-A6C2-4C0F744D1FD4}\E_YVIFKEE.ESI
WSD Scan Device
Device Kind Camera/scanner
Device Name WSD Scan Device
Vendor Unknown
Comment EPSON21294B (WF-3620 Series)
Location http://[fe80::9eae:d3ff:fe21:294b%9]:80/WSD/DEVICE
Driver
Date 6-21-2006
Version 10.0.17134.1
File C:\WINDOWS\system32\DRIVERS\WSDScan.sys
USB Audio Device
Device Kind Audio device
Device Name USB Audio Device
Vendor C-Media Electronics Inc
Comment C-Media USB Audio Device
Location 0000.001d.0000.001.001.000.000.000.000
Driver
Date 4-11-2018
Version 10.0.17134.1
File C:\WINDOWS\system32\drivers\USBAUDIO.sys
File C:\WINDOWS\system32\DRIVERS\drmk.sys
File C:\WINDOWS\system32\DRIVERS\portcls.sys
File C:\WINDOWS\system32\WMALFXGFXDSP.dll
File C:\WINDOWS\system32\SysFxUI.dll
USB MS Reader   
Device Kind Portable Device
Device Name USB MS Reader
Vendor GENERIC
Comment H:\
Location Volume
Driver
Date 6-21-2006
Version 10.0.17134.1
File C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
USB SD Reader   
Device Kind Portable Device
Device Name USB SD Reader
Vendor GENERIC
Comment E:\
Location Volume
Driver
Date 6-21-2006
Version 10.0.17134.1
File C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
USB xD/SM Reader
Device Kind Portable Device
Device Name USB xD/SM Reader
Vendor GENERIC
Comment G:\
Location Volume
Driver
Date 6-21-2006
Version 10.0.17134.1
File C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
FA GoFlex Desk  
Device Kind Portable Device
Device Name FA GoFlex Desk
Vendor Seagate
Comment FreeAgent GoFlex
Location Volume
Driver
Date 6-21-2006
Version 10.0.17134.1
File C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
Mini SD Reader  
Device Kind Portable Device
Device Name Mini SD Reader
Vendor GENERIC
Comment I:\
Location Volume
Driver
Date 6-21-2006
Version 10.0.17134.1
File C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
USB CF Reader   
Device Kind Portable Device
Device Name USB CF Reader
Vendor GENERIC
Comment F:\
Location Volume
Driver
Date 6-21-2006
Version 10.0.17134.1
File C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
Printers
Brother HL-L2360D series Printer
Printer Port WSD-c94e9eea-eb34-44bb-8f5a-bced0d94b79e.0064
Print Processor winprint
Availability Always
Priority 1
Duplex None
Print Quality 600 * 600 dpi Monochrome
Status Unknown
Driver
Driver Name Brother Laser Type1 Class Driver (v6.03)
Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_db8590e5390ddacf\Amd64\mxdwdrv.dll
EPSON WF-3640 Series (FAX)
Printer Port EP288953:WF-3640 SERIES
Print Processor winprint
Availability Always
Priority 1
Print Quality 203 * 203 dpi Monochrome
Status Unknown
Driver
Driver Name EPSON PC-FAX driver (v4.10)
Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\EFXGI09A.DLL
EPSON WF-3640 Series (FAX) (Copy 1)
Printer Port WSD-bbbf4e23-4ee3-48a3-8f2b-24808012c8e9.006c
Print Processor winprint
Availability Always
Priority 1
Print Quality 203 * 203 dpi Monochrome
Status Unknown
Driver
Driver Name EPSON PC-FAX driver (v4.10)
Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\EFXGI09A.DLL
EPSON WF-3640 Series (FAX) (Copy 2) (Default Printer)
Printer Port WSD-bbbf4e23-4ee3-48a3-8f2b-24808012c8e9.006c
Print Processor winprint
Availability Always
Priority 1
Print Quality 203 * 203 dpi Monochrome
Status Unknown
Driver
Driver Name EPSON PC-FAX driver (v4.10)
Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\EFXGI09A.DLL
EPSON WF-3640 Series (FAX) (Copy 3)
Printer Port EP288953:WF-3640 SERIES
Print Processor winprint
Availability Always
Priority 1
Print Quality 203 * 203 dpi Monochrome
Status Unknown
Driver
Driver Name EPSON PC-FAX driver (v4.10)
Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\EFXGI09A.DLL
EPSON WF-3640 Series (FAX) (Copy 4)
Printer Port WSD-bbbf4e23-4ee3-48a3-8f2b-24808012c8e9.006c
Print Processor winprint
Availability Always
Priority 1
Print Quality 203 * 203 dpi Monochrome
Status Unknown
Driver
Driver Name EPSON PC-FAX driver (v4.10)
Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\EFXGI09A.DLL
EPSON21294B (WF-3620 Series)
Printer Port WSD-4e4b5cc9-a0fd-42dc-8ccc-b20ddc37416a.003a
Print Processor winprint
Availability Always
Priority 1
Duplex None
Print Quality 600 * 600 dpi Color
Status Unknown
Driver
Driver Name EPSON WF-3620 Series (v2.00)
Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YMAIKEE.DLL
EPSON288953 (WF-3640 Series)
Printer Port WSD-bbbf4e23-4ee3-48a3-8f2b-24808012c8e9.006c
Print Processor winprint
Availability Always
Priority 1
Duplex None
Print Quality 600 * 600 dpi Color
Status Unknown
Driver
Driver Name EPSON WF-3640 Series (v2.00)
Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YMAIKDE.DLL
Fax
Printer Port SHRFAX:
Print Processor winprint
Availability Always
Priority 1
Duplex None
Print Quality 200 * 200 dpi Monochrome
Status Unknown
Driver
Driver Name Microsoft Shared Fax Driver (v4.00)
Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\FXSDRV.DLL
Microsoft Print to PDF
Printer Port PORTPROMPT:
Print Processor winprint
Availability Always
Priority 1
Duplex None
Print Quality 600 * 600 dpi Color
Status Unknown
Driver
Driver Name Microsoft Print To PDF (v6.03)
Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_db8590e5390ddacf\Amd64\mxdwdrv.dll
Microsoft XPS Document Writer
Printer Port PORTPROMPT:
Print Processor winprint
Availability Always
Priority 1
Duplex None
Print Quality 600 * 600 dpi Color
Status Unknown
Driver
Driver Name Microsoft XPS Document Writer v4 (v6.03)
Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_db8590e5390ddacf\Amd64\mxdwdrv.dll
WF-3640 Series(Network)
Printer Port EP288953:WF-3640 SERIES
Print Processor winprint
Availability Always
Priority 1
Duplex None
Print Quality 600 * 600 dpi Color
Status Unknown
Driver
Driver Name EPSON WF-3640 Series (v2.00)
Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YMAIKDE.DLL
Network
You are connected to the internet
Connected through Realtek PCIe GBE Family Controller
IP Address 192.168.1.75
Subnet mask 255.255.255.0
Gateway server 192.168.1.254
Preferred DNS server 192.168.1.254
DHCP Enabled
DHCP server 192.168.1.254
External IP Address 99.118.152.12
Adapter Type Ethernet
NetBIOS over TCP/IP Enabled via DHCP
NETBIOS Node Type Hybrid node
Link Speed 467 Bps
Computer Name
NetBIOS Name JOJO
DNS Name jojo
Membership Part of workgroup
Workgroup WORKGROUP
Remote Desktop
Disabled
Console
State Active
Domain JOJO
WinInet Info
LAN Connection
Local system uses a local area network to connect to the Internet
Local system has RAS to connect to the Internet
Wi-Fi Info
Wi-Fi not enabled
WinHTTPInfo
WinHTTPSessionProxyType No proxy
Session Proxy
Session Proxy Bypass
Connect Retries 5
Connect Timeout (ms) 60,000
HTTP Version HTTP 1.1
Max Connects Per 1.0 Servers INFINITE
Max Connects Per Servers INFINITE
Max HTTP automatic redirects 10
Max HTTP status continue 10
Send Timeout (ms) 30,000
IEProxy Auto Detect No
IEProxy Auto Config
IEProxy
IEProxy Bypass
Default Proxy Config Access Type No proxy
Default Config Proxy
Default Config Proxy Bypass
Sharing and Discovery
Network Discovery Enabled
File and Printer Sharing Enabled
File and printer sharing service Enabled
Simple File Sharing Enabled
Administrative Shares Enabled
Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves
Adapters List
Enabled
Realtek PCIe GBE Family Controller
Connection-specific DNS Suffix attlocal.net
Connection Name Ethernet
NetBIOS over TCPIP Yes
DHCP enabled Yes
MAC Address E0-69-95-8C-A3-64
IP Address 192.168.1.75
Subnet mask 255.255.255.0
Gateway server 192.168.1.254
DHCP 192.168.1.254
DNS Server 192.168.1.254
Disabled
802.11n Wireless LAN Card
Connection Name Wi-Fi
Network Shares
Users C:\Users
Seagate Backup E:\Seagate Backup
Current TCP Connections
AppleMobileDeviceService.exe (3792)
Local 127.0.0.1:27015 LISTEN
C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe (5148)
Local 0.0.0.0:2968 LISTEN
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (5668)
Local 192.168.1.75:4807 ESTABLISHED Remote 108.177.122.188:5228 (Querying... )
Local 127.0.0.1:4816 ESTABLISHED Remote 127.0.0.1:59243 (Querying... )
C:\Program Files (x86)\Plex\Plex Media Server\Plex DLNA Server.exe (10416)
Local 127.0.0.1:7929 ESTABLISHED Remote 127.0.0.1:7930 (Querying... )
Local 127.0.0.1:1843 ESTABLISHED Remote 127.0.0.1:1842 (Querying... )
Local 127.0.0.1:1842 ESTABLISHED Remote 127.0.0.1:1843 (Querying... )
Local 127.0.0.1:1841 ESTABLISHED Remote 127.0.0.1:1840 (Querying... )
Local 127.0.0.1:1840 ESTABLISHED Remote 127.0.0.1:1841 (Querying... )
Local 127.0.0.1:1839 ESTABLISHED Remote 127.0.0.1:1838 (Querying... )
Local 127.0.0.1:1838 ESTABLISHED Remote 127.0.0.1:1839 (Querying... )
Local 127.0.0.1:1837 ESTABLISHED Remote 127.0.0.1:1836 (Querying... )
Local 127.0.0.1:1836 ESTABLISHED Remote 127.0.0.1:1837 (Querying... )
Local 127.0.0.1:1835 ESTABLISHED Remote 127.0.0.1:1834 (Querying... )
Local 127.0.0.1:1834 ESTABLISHED Remote 127.0.0.1:1835 (Querying... )
Local 0.0.0.0:32469 LISTEN
Local 127.0.0.1:1832 ESTABLISHED Remote 127.0.0.1:1833 (Querying... )
Local 0.0.0.0:1706 LISTEN
Local 127.0.0.1:7930 ESTABLISHED Remote 127.0.0.1:7929 (Querying... )
Local 192.168.1.75:8045 CLOSE-WAIT Remote 192.168.1.173:49152 (Querying... )
Local 127.0.0.1:1833 ESTABLISHED Remote 127.0.0.1:1832 (Querying... )
Local 127.0.0.1:8044 ESTABLISHED Remote 127.0.0.1:8043 (Querying... )
Local 127.0.0.1:8043 ESTABLISHED Remote 127.0.0.1:8044 (Querying... )
Local 127.0.0.1:7932 ESTABLISHED Remote 127.0.0.1:7931 (Querying... )
Local 127.0.0.1:1831 ESTABLISHED Remote 127.0.0.1:1830 (Querying... )
Local 127.0.0.1:7931 ESTABLISHED Remote 127.0.0.1:7932 (Querying... )
Local 127.0.0.1:1830 ESTABLISHED Remote 127.0.0.1:1831 (Querying... )
Local 192.168.1.75:32469 ESTABLISHED Remote 192.168.1.73:54070 (Querying... )
Local 192.168.1.75:32469 ESTABLISHED Remote 192.168.1.73:54072 (Querying... )
C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe (7580)
Local 192.168.1.75:1750 CLOSE-WAIT Remote 50.116.44.223:443 (Querying... ) (HTTPS)
Local 0.0.0.0:32400 LISTEN
Local 192.168.1.75:1751 CLOSE-WAIT Remote 45.79.11.43:443 (Querying... ) (HTTPS)
Local 192.168.1.75:1752 CLOSE-WAIT Remote 45.33.73.209:443 (Querying... ) (HTTPS)
Local 192.168.1.75:1753 CLOSE-WAIT Remote 172.104.245.130:443 (Querying... ) (HTTPS)
Local 192.168.1.75:1754 CLOSE-WAIT Remote 139.162.117.249:443 (Querying... ) (HTTPS)
Local 192.168.1.75:1755 CLOSE-WAIT Remote 139.162.54.192:443 (Querying... ) (HTTPS)
Local 192.168.1.75:1749 ESTABLISHED Remote 45.79.197.109:443 (Querying... ) (HTTPS)
Local 127.0.0.1:32401 LISTEN
Local 192.168.1.75:1758 CLOSE-WAIT Remote 45.79.197.109:443 (Querying... ) (HTTPS)
Local 192.168.1.75:1757 CLOSE-WAIT Remote 184.105.148.83:443 (Querying... ) (HTTPS)
Local 192.168.1.75:1756 CLOSE-WAIT Remote 109.237.24.233:443 (Querying... ) (HTTPS)
Local 192.168.1.75:1748 CLOSE-WAIT Remote 82.94.168.60:443 (Querying... ) (HTTPS)
Local 192.168.1.75:1727 CLOSE-WAIT Remote 52.211.233.249:443 (Querying... ) (HTTPS)
C:\Program Files (x86)\Plex\Plex Media Server\Plex Tuner Service.exe (10524)
Local 127.0.0.1:32600 LISTEN
C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe (4948)
Local 127.0.0.1:1732 LISTEN
Local 127.0.0.1:1733 ESTABLISHED Remote 127.0.0.1:1734 (Querying... )
Local 127.0.0.1:1734 ESTABLISHED Remote 127.0.0.1:1733 (Querying... )
C:\Program Files\Logitech\SetPointP\SetPoint.exe (10012)
Local 127.0.0.1:59243 LISTEN
Local 127.0.0.1:59243 ESTABLISHED Remote 127.0.0.1:4816 (Querying... )
C:\Program Files\WindowsApps\Microsoft.WindowsStore_11805.1001.42.0_x64__8wekyb3d8bbwe\WinStore.App.exe (9280)
Local 192.168.1.75:3120 CLOSE-WAIT Remote 23.45.144.116:443 (Querying... ) (HTTPS)
C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe (6220)
Local 192.168.1.75:1826 CLOSE-WAIT Remote 23.222.72.17:443 (Querying... ) (HTTPS)
C:\Users\sadd\AppData\Local\Cisco\VideoGuardPlayer\VideoGuardMonitor\CiscoVideoGuardMonitor.exe (9428)
Local 127.0.0.1:843 LISTEN
Local 127.0.0.1:9005 LISTEN
Local 127.0.0.1:9015 LISTEN
C:\Windows\System32\browser_broker.exe (9360)
Local 192.168.1.75:7325 ESTABLISHED Remote 72.21.81.200:443 (Querying... ) (HTTPS)
C:\Windows\System32\smartscreen.exe (3812)
Local 192.168.1.75:7988 ESTABLISHED Remote 23.61.187.27:80 (Querying... ) (HTTP)
C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (4456)
Local 192.168.1.75:7980 ESTABLISHED Remote 23.61.187.27:80 (Querying... ) (HTTP)
Local 192.168.1.75:7979 ESTABLISHED Remote 23.61.187.27:80 (Querying... ) (HTTP)
C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (10052)
Local 192.168.1.75:7347 LAST-ACK Remote 151.139.237.73:80 (Querying... ) (HTTP)
Local 192.168.1.75:7354 LAST-ACK Remote 169.54.251.164:80 (Querying... ) (HTTP)
Local 192.168.1.75:7344 LAST-ACK Remote 151.139.237.73:80 (Querying... ) (HTTP)
Local 192.168.1.75:7345 LAST-ACK Remote 151.139.237.73:80 (Querying... ) (HTTP)
Local 192.168.1.75:7359 LAST-ACK Remote 208.118.62.70:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7343 LAST-ACK Remote 151.139.237.73:80 (Querying... ) (HTTP)
Local 192.168.1.75:7348 LAST-ACK Remote 169.54.251.164:80 (Querying... ) (HTTP)
Local 192.168.1.75:7342 LAST-ACK Remote 151.139.237.73:80 (Querying... ) (HTTP)
Local 192.168.1.75:7346 LAST-ACK Remote 151.139.237.73:80 (Querying... ) (HTTP)
C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (3240)
Local 192.168.1.75:7861 ESTABLISHED Remote 64.233.185.156:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7864 ESTABLISHED Remote 98.136.101.121:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7865 CLOSE-WAIT Remote 98.136.101.121:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7866 ESTABLISHED Remote 104.36.113.17:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7867 ESTABLISHED Remote 104.36.113.17:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7868 ESTABLISHED Remote 104.36.113.17:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7869 ESTABLISHED Remote 74.125.138.95:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7870 ESTABLISHED Remote 74.125.138.95:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7871 ESTABLISHED Remote 162.248.19.152:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7872 ESTABLISHED Remote 162.248.19.152:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7873 ESTABLISHED Remote 93.184.215.81:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7875 ESTABLISHED Remote 204.11.110.62:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7876 ESTABLISHED Remote 204.11.110.62:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7877 CLOSE-WAIT Remote 204.11.110.62:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7878 ESTABLISHED Remote 93.184.215.81:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7881 CLOSE-WAIT Remote 204.11.110.62:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7883 ESTABLISHED Remote 63.251.88.56:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7885 CLOSE-WAIT Remote 63.251.109.129:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7887 CLOSE-WAIT Remote 52.26.71.189:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7888 CLOSE-WAIT Remote 52.26.71.189:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7889 CLOSE-WAIT Remote 23.45.144.62:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7890 ESTABLISHED Remote 23.45.144.62:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7896 ESTABLISHED Remote 204.154.111.77:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7901 ESTABLISHED Remote 74.125.138.157:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7902 ESTABLISHED Remote 74.125.138.157:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7903 CLOSE-WAIT Remote 144.217.101.180:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7908 CLOSE-WAIT Remote 63.251.109.87:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7915 CLOSE-WAIT Remote 205.185.208.140:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7916 CLOSE-WAIT Remote 205.185.208.140:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8054 ESTABLISHED Remote 74.125.138.97:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8055 ESTABLISHED Remote 74.125.138.97:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8060 ESTABLISHED Remote 74.117.182.94:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8061 ESTABLISHED Remote 74.117.182.94:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8063 ESTABLISHED Remote 169.54.251.164:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8064 ESTABLISHED Remote 169.54.251.164:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8065 ESTABLISHED Remote 74.125.138.94:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8066 ESTABLISHED Remote 74.125.138.94:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8067 CLOSE-WAIT Remote 69.16.175.42:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8070 ESTABLISHED Remote 184.51.114.96:80 (Querying... ) (HTTP)
Local 192.168.1.75:8071 ESTABLISHED Remote 104.24.105.183:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8072 ESTABLISHED Remote 104.24.105.183:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8073 ESTABLISHED Remote 104.31.71.72:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8074 ESTABLISHED Remote 104.31.71.72:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8075 ESTABLISHED Remote 18.188.13.205:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8076 ESTABLISHED Remote 18.188.13.205:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7420 ESTABLISHED Remote 151.101.194.217:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7429 CLOSE-WAIT Remote 205.185.208.52:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7430 CLOSE-WAIT Remote 205.185.208.52:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7437 CLOSE-WAIT Remote 69.16.175.42:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7438 CLOSE-WAIT Remote 69.16.175.42:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7439 CLOSE-WAIT Remote 69.16.175.42:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7440 CLOSE-WAIT Remote 69.16.175.42:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7441 CLOSE-WAIT Remote 69.16.175.42:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7442 CLOSE-WAIT Remote 69.16.175.42:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7447 ESTABLISHED Remote 192.229.163.25:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7448 CLOSE-WAIT Remote 192.229.163.25:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7449 ESTABLISHED Remote 23.45.146.114:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7450 ESTABLISHED Remote 23.45.146.114:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7452 ESTABLISHED Remote 104.19.196.151:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7465 ESTABLISHED Remote 74.125.138.138:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7467 ESTABLISHED Remote 23.38.129.45:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7469 ESTABLISHED Remote 74.125.138.156:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7491 CLOSE-WAIT Remote 18.216.61.30:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7492 CLOSE-WAIT Remote 18.216.61.30:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7501 ESTABLISHED Remote 64.233.185.148:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7521 ESTABLISHED Remote 173.194.219.156:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7523 CLOSE-WAIT Remote 209.191.163.208:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7524 CLOSE-WAIT Remote 209.191.163.208:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7525 ESTABLISHED Remote 204.2.250.100:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7526 ESTABLISHED Remote 204.2.250.100:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7527 ESTABLISHED Remote 208.185.50.50:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7528 ESTABLISHED Remote 208.185.50.50:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7529 ESTABLISHED Remote 208.185.50.50:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7531 CLOSE-WAIT Remote 104.254.150.69:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7533 CLOSE-WAIT Remote 104.254.150.69:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7534 CLOSE-WAIT Remote 104.254.150.69:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7535 CLOSE-WAIT Remote 104.254.150.69:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7536 CLOSE-WAIT Remote 104.254.150.69:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7537 CLOSE-WAIT Remote 104.254.150.69:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7538 CLOSE-WAIT Remote 209.197.3.36:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7539 CLOSE-WAIT Remote 209.197.3.36:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7540 CLOSE-WAIT Remote 199.244.51.60:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7541 CLOSE-WAIT Remote 199.244.51.60:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7546 ESTABLISHED Remote 172.217.4.2:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7556 CLOSE-WAIT Remote 104.254.150.13:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7557 CLOSE-WAIT Remote 104.254.150.13:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7558 CLOSE-WAIT Remote 34.197.143.174:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7559 CLOSE-WAIT Remote 34.197.143.174:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7569 ESTABLISHED Remote 23.45.144.253:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7570 CLOSE-WAIT Remote 23.45.144.253:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7575 CLOSE-WAIT Remote 23.45.145.141:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7576 ESTABLISHED Remote 23.45.145.141:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7588 ESTABLISHED Remote 204.11.109.78:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7589 CLOSE-WAIT Remote 204.11.109.78:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7591 ESTABLISHED Remote 64.233.185.132:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7594 ESTABLISHED Remote 216.200.232.234:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7595 ESTABLISHED Remote 216.200.232.234:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7600 ESTABLISHED Remote 161.170.232.53:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7601 ESTABLISHED Remote 161.170.232.53:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7602 CLOSE-WAIT Remote 34.194.143.228:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7603 CLOSE-WAIT Remote 34.194.143.228:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7610 ESTABLISHED Remote 23.45.132.55:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7611 ESTABLISHED Remote 23.45.132.55:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7612 ESTABLISHED Remote 23.45.132.55:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7613 ESTABLISHED Remote 23.45.132.55:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7614 ESTABLISHED Remote 23.45.132.55:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7615 ESTABLISHED Remote 23.45.132.55:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7616 CLOSE-WAIT Remote 23.45.146.114:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7618 CLOSE-WAIT Remote 52.88.196.247:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7619 CLOSE-WAIT Remote 52.88.196.247:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7620 CLOSE-WAIT Remote 35.185.57.166:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7621 CLOSE-WAIT Remote 35.185.57.166:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7626 ESTABLISHED Remote 152.163.13.4:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7627 ESTABLISHED Remote 152.163.13.4:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7628 CLOSE-WAIT Remote 205.180.87.201:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7629 CLOSE-WAIT Remote 205.180.87.201:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7630 CLOSE-WAIT Remote 50.116.194.21:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7631 CLOSE-WAIT Remote 50.116.194.21:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7632 ESTABLISHED Remote 162.248.19.151:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7633 ESTABLISHED Remote 162.248.19.151:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7637 CLOSE-WAIT Remote 35.196.168.191:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7638 CLOSE-WAIT Remote 35.196.168.191:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7642 CLOSE-WAIT Remote 104.254.150.179:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7643 CLOSE-WAIT Remote 104.254.150.13:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7648 ESTABLISHED Remote 204.11.110.61:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7649 ESTABLISHED Remote 204.11.110.61:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7653 CLOSE-WAIT Remote 52.202.72.120:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7654 CLOSE-WAIT Remote 52.202.72.120:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7658 CLOSE-WAIT Remote 159.127.41.201:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7663 CLOSE-WAIT Remote 35.168.71.47:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7664 CLOSE-WAIT Remote 35.168.71.47:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7667 CLOSE-WAIT Remote 52.0.214.228:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7668 CLOSE-WAIT Remote 52.0.214.228:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7669 CLOSE-WAIT Remote 209.15.36.31:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7670 CLOSE-WAIT Remote 209.15.36.31:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7671 ESTABLISHED Remote 4.78.226.233:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7672 ESTABLISHED Remote 4.78.226.233:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7675 ESTABLISHED Remote 104.36.113.17:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7679 ESTABLISHED Remote 151.101.48.166:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7681 ESTABLISHED Remote 151.101.48.166:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7682 CLOSE-WAIT Remote 104.193.83.156:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7683 CLOSE-WAIT Remote 104.193.83.156:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7684 ESTABLISHED Remote 52.54.208.77:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7686 CLOSE-WAIT Remote 52.44.153.144:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7687 CLOSE-WAIT Remote 52.44.153.144:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7688 ESTABLISHED Remote 152.163.13.4:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7689 ESTABLISHED Remote 152.163.13.4:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7690 CLOSE-WAIT Remote 8.41.222.241:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7691 CLOSE-WAIT Remote 8.41.222.241:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7692 CLOSE-WAIT Remote 173.231.178.115:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7693 CLOSE-WAIT Remote 173.231.178.115:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7694 CLOSE-WAIT Remote 52.0.216.150:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7695 CLOSE-WAIT Remote 52.0.216.150:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7698 CLOSE-WAIT Remote 209.197.3.36:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7699 CLOSE-WAIT Remote 209.197.3.36:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7702 CLOSE-WAIT Remote 52.207.44.155:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7703 CLOSE-WAIT Remote 52.207.44.155:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7704 ESTABLISHED Remote 204.11.110.62:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7705 ESTABLISHED Remote 204.11.110.62:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7706 ESTABLISHED Remote 104.36.113.17:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7708 ESTABLISHED Remote 104.36.113.17:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7724 CLOSE-WAIT Remote 198.51.152.184:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7725 CLOSE-WAIT Remote 198.51.152.184:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7726 ESTABLISHED Remote 104.36.113.17:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7727 ESTABLISHED Remote 104.36.113.17:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7736 CLOSE-WAIT Remote 23.23.143.172:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7737 CLOSE-WAIT Remote 23.23.143.172:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7740 CLOSE-WAIT Remote 209.197.3.15:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7741 CLOSE-WAIT Remote 209.197.3.15:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7742 CLOSE-WAIT Remote 209.197.3.15:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7743 CLOSE-WAIT Remote 52.73.189.24:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7744 ESTABLISHED Remote 52.73.189.24:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7746 ESTABLISHED Remote 93.184.215.81:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7753 ESTABLISHED Remote 74.125.196.156:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7759 ESTABLISHED Remote 52.85.207.181:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7770 ESTABLISHED Remote 23.45.146.99:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7771 ESTABLISHED Remote 23.45.146.99:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7774 CLOSE-WAIT Remote 34.196.187.76:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7775 CLOSE-WAIT Remote 34.196.187.76:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7776 ESTABLISHED Remote 8.43.72.21:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7777 ESTABLISHED Remote 8.43.72.21:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7778 CLOSE-WAIT Remote 52.46.130.13:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7779 CLOSE-WAIT Remote 52.46.130.13:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7780 ESTABLISHED Remote 23.45.145.140:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7781 CLOSE-WAIT Remote 23.45.145.140:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7782 CLOSE-WAIT Remote 18.188.243.176:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7783 CLOSE-WAIT Remote 18.188.243.176:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7787 ESTABLISHED Remote 37.157.2.238:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7793 CLOSE-WAIT Remote 34.198.220.96:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7794 CLOSE-WAIT Remote 34.198.220.96:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7796 ESTABLISHED Remote 185.167.164.43:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7798 ESTABLISHED Remote 169.60.66.38:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7799 ESTABLISHED Remote 169.60.66.38:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7801 CLOSE-WAIT Remote 54.186.237.130:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7802 CLOSE-WAIT Remote 54.186.237.130:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7806 CLOSE-WAIT Remote 74.217.250.126:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7807 CLOSE-WAIT Remote 74.217.250.126:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7808 ESTABLISHED Remote 98.139.225.43:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7809 CLOSE-WAIT Remote 162.210.199.69:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7810 CLOSE-WAIT Remote 98.139.225.43:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7811 CLOSE-WAIT Remote 162.210.199.69:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7812 CLOSE-WAIT Remote 74.217.253.61:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7813 CLOSE-WAIT Remote 74.217.253.61:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7814 CLOSE-WAIT Remote 104.254.150.13:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7815 CLOSE-WAIT Remote 104.254.150.13:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7816 CLOSE-WAIT Remote 52.4.67.165:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7817 CLOSE-WAIT Remote 52.4.67.165:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7818 CLOSE-WAIT Remote 69.90.153.133:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7819 CLOSE-WAIT Remote 69.90.153.133:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7820 ESTABLISHED Remote 35.190.74.53:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7822 ESTABLISHED Remote 104.24.246.16:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7823 CLOSE-WAIT Remote 104.24.246.16:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7824 CLOSE-WAIT Remote 141.170.25.54:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7826 CLOSE-WAIT Remote 204.2.197.211:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7828 CLOSE-WAIT Remote 23.222.138.243:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7829 ESTABLISHED Remote 23.222.138.243:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7830 CLOSE-WAIT Remote 173.241.244.11:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7831 CLOSE-WAIT Remote 173.241.244.11:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7833 ESTABLISHED Remote 162.248.19.152:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7834 ESTABLISHED Remote 162.248.19.152:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7835 CLOSE-WAIT Remote 52.6.255.240:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7836 CLOSE-WAIT Remote 52.6.255.240:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7838 CLOSE-WAIT Remote 204.11.110.61:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7839 CLOSE-WAIT Remote 204.11.110.61:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7840 CLOSE-WAIT Remote 204.11.110.61:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7841 CLOSE-WAIT Remote 204.11.110.61:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7844 CLOSE-WAIT Remote 64.125.223.117:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7847 ESTABLISHED Remote 74.125.23.120:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7848 ESTABLISHED Remote 74.125.23.120:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7849 ESTABLISHED Remote 204.11.110.61:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7850 ESTABLISHED Remote 204.11.110.61:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7851 CLOSE-WAIT Remote 38.106.34.165:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7852 CLOSE-WAIT Remote 38.106.34.165:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7855 ESTABLISHED Remote 35.190.91.160:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7856 ESTABLISHED Remote 35.190.91.160:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7857 ESTABLISHED Remote 204.11.110.61:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7858 ESTABLISHED Remote 23.45.144.62:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7859 CLOSE-WAIT Remote 23.45.144.62:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7860 ESTABLISHED Remote 64.233.185.156:443 (Querying... ) (HTTPS)
lsass.exe (732)
Local 0.0.0.0:1543 LISTEN
mqsvc.exe (4060)
Local 0.0.0.0:2105 LISTEN
Local 0.0.0.0:1547 LISTEN
Local 0.0.0.0:1801 LISTEN
Local 0.0.0.0:2103 LISTEN
Local 0.0.0.0:2107 LISTEN
SDUpdSvc.exe (3948)
Local 127.0.0.1:21321 LISTEN
services.exe (704)
Local 0.0.0.0:1667 LISTEN
spoolsv.exe (3440)
Local 0.0.0.0:1544 LISTEN
svchost.exe (1496)
Local 0.0.0.0:1537 LISTEN
svchost.exe (1560)
Local 0.0.0.0:1538 LISTEN
svchost.exe (2064)
Local 0.0.0.0:1539 LISTEN
svchost.exe (3696)
Local 192.168.1.75:7978 ESTABLISHED Remote 109.70.240.130:80 (Querying... ) (HTTP)
Local 192.168.1.75:7917 ESTABLISHED Remote 74.125.138.102:80 (Querying... ) (HTTP)
Local 192.168.1.75:7918 ESTABLISHED Remote 13.32.241.122:80 (Querying... ) (HTTP)
Local 192.168.1.75:7919 ESTABLISHED Remote 72.21.91.29:80 (Querying... ) (HTTP)
Local 192.168.1.75:7965 ESTABLISHED Remote 72.21.91.29:80 (Querying... ) (HTTP)
svchost.exe (3784)
Local 192.168.1.75:1675 ESTABLISHED Remote 52.173.24.17:443 (Querying... ) (HTTPS)
svchost.exe (516)
Local 0.0.0.0:135 (DCE) LISTEN
svchost.exe (5964)
Local 0.0.0.0:5040 LISTEN
Local 192.168.1.75:7372 ESTABLISHED Remote 20.36.28.105:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7351 ESTABLISHED Remote 20.36.28.105:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7356 ESTABLISHED Remote 20.36.28.105:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7373 ESTABLISHED Remote 20.36.28.105:443 (Querying... ) (HTTPS)
svchost.exe (9888)
Local 0.0.0.0:7680 LISTEN
System Process
Local 0.0.0.0:445 (Windows shares) LISTEN
Local 0.0.0.0:2869 LISTEN
Local 0.0.0.0:5357 LISTEN
Local 0.0.0.0:10243 LISTEN
Local 192.168.1.75:2869 ESTABLISHED Remote 192.168.1.73:50530 (Querying... )
Local 192.168.1.75:139 (NetBIOS session service) LISTEN
System Process
Local 127.0.0.1:8035 TIME-WAIT Remote 127.0.0.1:8034 (Querying... )
Local 192.168.1.75:7340 TIME-WAIT Remote 172.217.12.106:80 (Querying... ) (HTTP)
Local 192.168.1.75:7608 TIME-WAIT Remote 204.79.197.200:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7747 TIME-WAIT Remote 52.85.207.235:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7739 TIME-WAIT Remote 52.85.207.157:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7738 TIME-WAIT Remote 52.85.207.157:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7701 TIME-WAIT Remote 209.58.136.30:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7700 TIME-WAIT Remote 209.58.136.30:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7597 TIME-WAIT Remote 72.30.2.182:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7596 TIME-WAIT Remote 72.30.2.182:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7617 TIME-WAIT Remote 173.194.219.154:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7593 TIME-WAIT Remote 173.194.219.154:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7361 TIME-WAIT Remote 52.85.207.48:80 (Querying... ) (HTTP)
Local 192.168.1.75:7362 TIME-WAIT Remote 54.192.122.26:80 (Querying... ) (HTTP)
Local 192.168.1.75:7592 TIME-WAIT Remote 173.194.219.154:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7590 TIME-WAIT Remote 64.233.185.132:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7609 TIME-WAIT Remote 204.79.197.200:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7554 TIME-WAIT Remote 104.31.71.72:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7425 TIME-WAIT Remote 216.58.218.170:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7349 TIME-WAIT Remote 130.211.5.208:80 (Querying... ) (HTTP)
Local 192.168.1.75:7426 TIME-WAIT Remote 216.58.218.170:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7350 TIME-WAIT Remote 74.125.138.97:80 (Querying... ) (HTTP)
Local 192.168.1.75:7427 TIME-WAIT Remote 74.125.138.97:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7428 TIME-WAIT Remote 74.125.138.97:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7500 TIME-WAIT Remote 64.233.185.148:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7567 TIME-WAIT Remote 64.233.185.84:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7568 TIME-WAIT Remote 64.233.185.84:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7522 TIME-WAIT Remote 173.194.219.156:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7577 TIME-WAIT Remote 64.233.185.94:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7578 TIME-WAIT Remote 64.233.185.94:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7565 TIME-WAIT Remote 104.28.18.232:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7542 TIME-WAIT Remote 64.233.185.155:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7446 TIME-WAIT Remote 172.217.12.106:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7543 TIME-WAIT Remote 64.233.185.155:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7544 TIME-WAIT Remote 64.233.185.148:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7545 TIME-WAIT Remote 64.233.185.148:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7530 TIME-WAIT Remote 104.20.15.243:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7451 TIME-WAIT Remote 104.19.196.151:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7566 TIME-WAIT Remote 104.28.18.232:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7532 TIME-WAIT Remote 104.20.15.243:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7466 TIME-WAIT Remote 74.125.138.138:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7548 TIME-WAIT Remote 54.192.122.26:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7549 TIME-WAIT Remote 54.192.122.26:443 (Querying... ) (HTTPS)
Local 127.0.0.1:7517 TIME-WAIT Remote 127.0.0.1:7516 (Querying... )
Local 192.168.1.75:7470 TIME-WAIT Remote 74.125.138.156:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7471 TIME-WAIT Remote 54.192.7.172:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7472 TIME-WAIT Remote 64.233.185.157:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7473 TIME-WAIT Remote 64.233.185.157:443 (Querying... ) (HTTPS)
Local 127.0.0.1:8015 TIME-WAIT Remote 127.0.0.1:8016 (Querying... )
Local 127.0.0.1:8016 TIME-WAIT Remote 127.0.0.1:8015 (Querying... )
Local 127.0.0.1:8018 TIME-WAIT Remote 127.0.0.1:8017 (Querying... )
Local 127.0.0.1:8020 TIME-WAIT Remote 127.0.0.1:8019 (Querying... )
Local 127.0.0.1:8022 TIME-WAIT Remote 127.0.0.1:8021 (Querying... )
Local 127.0.0.1:8024 TIME-WAIT Remote 127.0.0.1:8023 (Querying... )
Local 127.0.0.1:8028 TIME-WAIT Remote 127.0.0.1:8026 (Querying... )
Local 127.0.0.1:8029 TIME-WAIT Remote 127.0.0.1:8027 (Querying... )
Local 127.0.0.1:8032 TIME-WAIT Remote 127.0.0.1:8031 (Querying... )
Local 127.0.0.1:8033 TIME-WAIT Remote 127.0.0.1:8030 (Querying... )
Local 192.168.1.75:7264 TIME-WAIT Remote 74.125.138.97:443 (Querying... ) (HTTPS)
Local 127.0.0.1:8038 TIME-WAIT Remote 127.0.0.1:8037 (Querying... )
Local 127.0.0.1:8041 TIME-WAIT Remote 127.0.0.1:8040 (Querying... )
Local 192.168.1.75:7474 TIME-WAIT Remote 54.192.7.172:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7476 TIME-WAIT Remote 104.24.105.183:443 (Querying... ) (HTTPS)
Local 127.0.0.1:8049 TIME-WAIT Remote 127.0.0.1:8048 (Querying... )
Local 127.0.0.1:8051 TIME-WAIT Remote 127.0.0.1:8050 (Querying... )
Local 127.0.0.1:8057 TIME-WAIT Remote 127.0.0.1:8056 (Querying... )
Local 127.0.0.1:8059 TIME-WAIT Remote 127.0.0.1:8058 (Querying... )
Local 127.0.0.1:8080 TIME-WAIT Remote 127.0.0.1:8079 (Querying... )
Local 127.0.0.1:8082 TIME-WAIT Remote 127.0.0.1:8081 (Querying... )
Local 192.168.1.75:7477 TIME-WAIT Remote 169.54.251.164:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7478 TIME-WAIT Remote 169.54.251.164:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7481 TIME-WAIT Remote 64.233.185.113:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7482 TIME-WAIT Remote 64.233.185.113:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7485 TIME-WAIT Remote 74.125.138.94:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7486 TIME-WAIT Remote 74.125.138.94:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7553 TIME-WAIT Remote 104.31.71.72:443 (Querying... ) (HTTPS)
Local 192.168.1.75:8069 TIME-WAIT Remote 138.197.107.186:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7821 TIME-WAIT Remote 35.190.74.53:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7804 TIME-WAIT Remote 18.209.130.63:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7803 TIME-WAIT Remote 18.209.130.63:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7795 TIME-WAIT Remote 185.167.164.43:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7786 TIME-WAIT Remote 37.157.2.238:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7764 TIME-WAIT Remote 52.85.207.181:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7763 TIME-WAIT Remote 52.85.207.106:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7762 TIME-WAIT Remote 52.85.207.181:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7761 TIME-WAIT Remote 52.85.207.106:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7760 TIME-WAIT Remote 52.85.207.181:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7758 TIME-WAIT Remote 52.85.207.106:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7757 TIME-WAIT Remote 52.85.207.84:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7756 TIME-WAIT Remote 52.85.207.84:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7755 TIME-WAIT Remote 52.85.207.84:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7754 TIME-WAIT Remote 74.125.196.156:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7751 TIME-WAIT Remote 172.217.4.2:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7233 TIME-WAIT Remote 40.79.69.189:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7234 TIME-WAIT Remote 40.79.69.189:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7239 TIME-WAIT Remote 13.32.174.135:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7240 TIME-WAIT Remote 13.32.174.135:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7242 TIME-WAIT Remote 151.101.48.64:80 (Querying... ) (HTTP)
Local 192.168.1.75:7245 TIME-WAIT Remote 172.217.12.106:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7246 TIME-WAIT Remote 172.217.12.106:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7247 TIME-WAIT Remote 151.139.237.73:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7249 TIME-WAIT Remote 151.139.237.73:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7250 TIME-WAIT Remote 151.139.237.73:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7251 TIME-WAIT Remote 151.139.237.73:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7252 TIME-WAIT Remote 151.139.237.73:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7253 TIME-WAIT Remote 216.58.218.164:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7254 TIME-WAIT Remote 216.58.218.164:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7255 TIME-WAIT Remote 216.58.218.170:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7256 TIME-WAIT Remote 216.58.218.170:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7257 TIME-WAIT Remote 169.54.251.164:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7258 TIME-WAIT Remote 169.54.251.164:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7259 TIME-WAIT Remote 130.211.5.208:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7260 TIME-WAIT Remote 130.211.5.208:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7262 TIME-WAIT Remote 74.125.138.94:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7265 TIME-WAIT Remote 72.21.91.29:80 (Querying... ) (HTTP)
Local 192.168.1.75:7270 TIME-WAIT Remote 74.125.138.94:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7271 TIME-WAIT Remote 74.125.138.94:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7275 TIME-WAIT Remote 74.125.138.138:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7276 TIME-WAIT Remote 74.125.138.138:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7278 TIME-WAIT Remote 52.85.207.48:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7280 TIME-WAIT Remote 54.192.122.26:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7281 TIME-WAIT Remote 54.192.122.26:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7282 TIME-WAIT Remote 72.21.91.29:80 (Querying... ) (HTTP)
Local 192.168.1.75:7283 TIME-WAIT Remote 74.125.138.156:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7284 TIME-WAIT Remote 74.125.138.156:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7748 TIME-WAIT Remote 52.85.207.235:443 (Querying... ) (HTTPS)
Local 192.168.1.75:7334 TIME-WAIT Remote 151.101.2.202:80 (Querying... ) (HTTP)
Local 192.168.1.75:7338 TIME-WAIT Remote 151.101.2.202:80 (Querying... ) (HTTP)
wininit.exe (624)
Local 0.0.0.0:1536 LISTEN
wmpnetwk.exe (6812)
Local 0.0.0.0:554 LISTEN
Generated with Speccy v1.32.740

  • 0

#20
dlwtechquest

dlwtechquest

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

sorry, here is the speccy txt.

Attached Files


  • 0

#21
RKinner

RKinner

    Malware Expert

  • Expert
  • 21,578 posts
  • MVP

Majority of errors are coming from an attempt to run IIS (a web server - not usually used on a private PC unless the user is very advanced).  I would turn it off.  Control panel,

(View by: Large Icons), Programs and Features, Turn Windows Features On or Off.  Uncheck Internet Information Services and Internet Information Services Hostable Web Core then OK.

Still in Control Panel:

Now click on Internet Options

Connections, LAN Settings.  UNcheck every box and hit OK.  OK.

 

Close Control Panel.

 

Search for

 

services.msc

 

hit Enter

 

Scroll down to net.tcp port sharing service and right click and select Properties.  Startup Type: should be Disabled.  If not change it and Apply.  If there are other services that start with .net they should be Disabled too.

 

Copy the next line:

 

FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i"
 

Open an Elevated Command Prompt:
Win 7: Start, All Programs, Accessories then right click on Command Prompt and Run as Administrator
Win 8: http://www.eightforu...indows-8-a.html
win 10: http://www.howtogeek...-in-windows-10/

Right click and Paste (or Edit then Paste) and the copied line should appear.
Hit Enter

 

Reboot and run VEW again.


  • 0

#22
dlwtechquest

dlwtechquest

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

The computer wouldn't stop internet information services. It returned a response that Windows couldn't complete the task, error: 0x800F0922. I looked on windows forums; it seems to be fine to uninstall. I uninstalled internet information services. We have no server. 


  • 0

#23
dlwtechquest

dlwtechquest

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

I made the LAN connection settings changes and the services.msc changes, copied and pasted the line you gave into an elevated command prompt, rebooted, and view logs to follow.


  • 0

#24
dlwtechquest

dlwtechquest

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
system* error* warning*  number of events 20
 
Vino's Event Viewer v01c run on Windows 7 in English
Report run at 09/07/2018 10:38:49 PM
 
Note: All dates below are in the format dd/mm/yyyy
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 10/07/2018 3:36:59 AM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  and APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  to the user jojo\sadd SID (S-1-5-21-1861271705-2052905311-3892416565-1000) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Log: 'System' Date/Time: 10/07/2018 3:35:09 AM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  and APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Log: 'System' Date/Time: 10/07/2018 3:34:43 AM
Type: Error Category: 0
Event: 7001 Source: Service Control Manager
The W3SVC service depends on the WAS service which failed to start because of the following error:  The system cannot find the file specified.
 
Log: 'System' Date/Time: 10/07/2018 3:34:43 AM
Type: Error Category: 0
Event: 7023 Source: Service Control Manager
The WAS service terminated with the following error:  The system cannot find the file specified.
 
Log: 'System' Date/Time: 10/07/2018 3:34:43 AM
Type: Error Category: 0
Event: 9006 Source: Microsoft-Windows-IIS-APPHOSTSVC
The Application Host Helper Service encountered an error trying to process the configuration data for config history.  The feature will be disabled.  To resolve this issue, please confirm that the configuration file is correct, has correct attribute values for config history and recommit the changes.  The feature will be enabled again if the configuration is correct.  The data field contains the error number.
 
Log: 'System' Date/Time: 10/07/2018 3:34:43 AM
Type: Error Category: 0
Event: 9000 Source: Microsoft-Windows-IIS-APPHOSTSVC
The Application Host Helper Service encountered an error while reading the data for SID mapping.  Please ensure that the application pool name data is correct in the configuration file.  To resolve this issue, please recommit the changes or restart this service.  The data field contains the error number.
 
Log: 'System' Date/Time: 10/07/2018 3:34:41 AM
Type: Error Category: 0
Event: 5005 Source: Microsoft-Windows-WAS
Windows Process Activation Service (WAS) is stopping because it encountered an error. The data field contains the error number.
 
Log: 'System' Date/Time: 10/07/2018 3:34:41 AM
Type: Error Category: 0
Event: 5215 Source: Microsoft-Windows-WAS
The Windows Process Activation Service (WAS) failed to execute initialization for offline setup. The data field contains the error number.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 10/07/2018 3:34:41 AM
Type: Warning Category: 0
Event: 11 Source: Microsoft-Windows-Wininit
Custom dynamic link libraries are being loaded for every application. The system administrator should review the list of libraries to ensure they are related to trusted applications. Please visit http://support.microsoft.com/kb/197571for more information.
 
Log: 'System' Date/Time: 10/07/2018 3:34:10 AM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WudfRd failed to load for the device ROOT\WPD\0000.

  • 0

#25
dlwtechquest

dlwtechquest

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

application* error* warning* number of events 20

 

Vino's Event Viewer v01c run on Windows 7 in English
Report run at 09/07/2018 10:38:49 PM
 
Note: All dates below are in the format dd/mm/yyyy
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 10/07/2018 3:36:59 AM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  and APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  to the user jojo\sadd SID (S-1-5-21-1861271705-2052905311-3892416565-1000) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Log: 'System' Date/Time: 10/07/2018 3:35:09 AM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  and APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Log: 'System' Date/Time: 10/07/2018 3:34:43 AM
Type: Error Category: 0
Event: 7001 Source: Service Control Manager
The W3SVC service depends on the WAS service which failed to start because of the following error:  The system cannot find the file specified.
 
Log: 'System' Date/Time: 10/07/2018 3:34:43 AM
Type: Error Category: 0
Event: 7023 Source: Service Control Manager
The WAS service terminated with the following error:  The system cannot find the file specified.
 
Log: 'System' Date/Time: 10/07/2018 3:34:43 AM
Type: Error Category: 0
Event: 9006 Source: Microsoft-Windows-IIS-APPHOSTSVC
The Application Host Helper Service encountered an error trying to process the configuration data for config history.  The feature will be disabled.  To resolve this issue, please confirm that the configuration file is correct, has correct attribute values for config history and recommit the changes.  The feature will be enabled again if the configuration is correct.  The data field contains the error number.
 
Log: 'System' Date/Time: 10/07/2018 3:34:43 AM
Type: Error Category: 0
Event: 9000 Source: Microsoft-Windows-IIS-APPHOSTSVC
The Application Host Helper Service encountered an error while reading the data for SID mapping.  Please ensure that the application pool name data is correct in the configuration file.  To resolve this issue, please recommit the changes or restart this service.  The data field contains the error number.
 
Log: 'System' Date/Time: 10/07/2018 3:34:41 AM
Type: Error Category: 0
Event: 5005 Source: Microsoft-Windows-WAS
Windows Process Activation Service (WAS) is stopping because it encountered an error. The data field contains the error number.
 
Log: 'System' Date/Time: 10/07/2018 3:34:41 AM
Type: Error Category: 0
Event: 5215 Source: Microsoft-Windows-WAS
The Windows Process Activation Service (WAS) failed to execute initialization for offline setup. The data field contains the error number.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
Log: 'System' Date/Time: 10/07/2018 3:33:26 AM
Type: Error Category: 0
Event: 10010 Source: Microsoft-Windows-DistributedCOM
The server {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} did not register with DCOM within the required timeout.
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 10/07/2018 3:34:41 AM
Type: Warning Category: 0
Event: 11 Source: Microsoft-Windows-Wininit
Custom dynamic link libraries are being loaded for every application. The system administrator should review the list of libraries to ensure they are related to trusted applications. Please visit http://support.microsoft.com/kb/197571for more information.
 
Log: 'System' Date/Time: 10/07/2018 3:34:10 AM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WudfRd failed to load for the device ROOT\WPD\0000.

  • 0

Advertisements


#26
dlwtechquest

dlwtechquest

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

Can I download and re-install Malwarebytes at some point? It was a paid license.


  • 0

#27
RKinner

RKinner

    Malware Expert

  • Expert
  • 21,578 posts
  • MVP

We are still seeing Windows Process Activation Service, Application Host Helper Service, W3SVC (World Wide Web Publishing Service)  trying to start.  These should have been removed when IIS was uninstalled.  Go back into services.msc  try to locate them.  Right click on each and select Properties then change Startup Type: to Disabled  OK.

 

Are you not able to get VEW to do an Application log?

 

You can reinstall MalwareBytes as soon as we get the PC running normally.


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP