Summary Operating System Windows 10 Home 64-bit CPU Intel Celeron G1840 @ 2.80GHz 31 °C Haswell 22nm Technology RAM 4.00GB Single-Channel DDR3 @ 665MHz (9-9-9-24) Motherboard Dell Inc. 02YRK5 (CPU 1) 33 °C Graphics Standard Monitor (1600x900@60Hz) Intel HD Graphics (Dell) Storage 596GB Hitachi HDT721064SLA360 (SATA ) 49 °C Optical Drives MATSHITA DVD+-RW SW830 Audio Realtek High Definition Audio Operating System Windows 10 Home 64-bit Computer type: Desktop Installation Date: 1/30/2021 3:07:29 PM Serial Number: T49TD-6VFBW-VV7HY-B2PXY-MY47H Windows Security Center User Account Control (UAC) Enabled Notify level 2 - Default Firewall Enabled Windows Update AutoUpdate Download Automatically and Install at Set Scheduled time Schedule Frequency Every Day Schedule Time Windows Defender Windows Defender Enabled Antivirus Antivirus Enabled Display Name Windows Defender Virus Signature Database Up to date .NET Frameworks installed v4.8 Full v4.8 Client v3.5 SP1 v3.0 SP2 v2.0 SP2 Internet Explorer Version 11.789.19041.0 PowerShell Version 5.1.19041.1 Environment Variables USERPROFILE C:\Users\mdhve SystemRoot C:\WINDOWS User Variables OneDrive C:\Users\mdhve\OneDrive OneDriveConsumer C:\Users\mdhve\OneDrive Path C:\Users\mdhve\AppData\Local\Microsoft\WindowsApps TEMP C:\Users\mdhve\AppData\Local\Temp TMP C:\Users\mdhve\AppData\Local\Temp Machine Variables ComSpec C:\WINDOWS\system32\cmd.exe DriverData C:\Windows\System32\Drivers\DriverData NUMBER_OF_PROCESSORS 2 OS Windows_NT Path C:\WINDOWS\system32 C:\WINDOWS C:\WINDOWS\System32\Wbem C:\WINDOWS\System32\WindowsPowerShell\v1.0\ C:\WINDOWS\System32\OpenSSH\ C:\Program Files (x86)\AOMEI Backupper C:\Program Files\PuTTY\ PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC PROCESSOR_ARCHITECTURE AMD64 PROCESSOR_IDENTIFIER Intel64 Family 6 Model 60 Stepping 3, GenuineIntel PROCESSOR_LEVEL 6 PROCESSOR_REVISION 3c03 PSModulePath %ProgramFiles%\WindowsPowerShell\Modules C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules TEMP C:\WINDOWS\TEMP TMP C:\WINDOWS\TEMP USERNAME SYSTEM windir C:\WINDOWS Power Profile Active power scheme Dell Hibernation Enabled Turn Off Monitor after: (On AC Power) Never Turn Off Hard Disk after: (On AC Power) 120 min Suspend after: (On AC Power) Never Screen saver Disabled Uptime Current Session Current Time 6/17/2022 9:46:09 PM Current Uptime 4,978 sec (0 d, 01 h, 22 m, 58 s) Last Boot Time 6/17/2022 8:23:11 PM Services Running AOMEI Backupper Scheduler Service Running Application Information Running AppX Deployment Service (AppXSVC) Running AVCTP service Running Background Tasks Infrastructure Service Running Base Filtering Engine Running Bluetooth Audio Gateway Service Running Bluetooth Support Service Running Capability Access Manager Service Running Client License Service (ClipSVC) Running Clipboard User Service_55c1b9 Running Clipboard User Service_5f6a3 Running CNG Key Isolation Running COM+ Event System Running Connected Devices Platform Service Running Connected Devices Platform User Service_55c1b9 Running Connected Devices Platform User Service_5f6a3 Running Connected User Experiences and Telemetry Running Contact Data_55c1b9 Running CoreMessaging Running Credential Manager Running Cryptographic Services Running Data Usage Running DCOM Server Process Launcher Running Delivery Optimization Running Device Association Service Running DHCP Client Running Diagnostic Policy Service Running Diagnostic Service Host Running Diagnostic System Host Running Display Policy Service Running Distributed Link Tracking Client Running DNS Client Running EaseUS Agent Service Running Everything Running Geolocation Service Running Group Policy Client Running Human Interface Device Service Running Intel HD Graphics Control Panel Service Running IP Helper Running Local Session Manager Running Microsoft Account Sign-in Assistant Running Microsoft Defender Antivirus Network Inspection Service Running Microsoft Defender Antivirus Service Running Microsoft Passport Running Microsoft Passport Container Running Microsoft Store Install Service Running Network Connection Broker Running Network List Service Running Network Location Awareness Running Network Store Interface Service Running Peer Networking Identity Manager Running Phone Service Running Plug and Play Running Power Running Print Spooler Running Program Compatibility Assistant Service Running Radio Management Service Running Realtek Audio Service Running Remote Access Connection Manager Running Remote Procedure Call (RPC) Running RPC Endpoint Mapper Running Secure Socket Tunneling Protocol Service Running Security Accounts Manager Running Security Center Running Server Running Shell Hardware Detection Running SSDP Discovery Running State Repository Service Running Storage Service Running Sync Host_55c1b9 Running Sync Host_5f6a3 Running SysMain Running System Event Notification Service Running System Events Broker Running System Guard Runtime Monitor Broker Running Task Scheduler Running TCP/IP NetBIOS Helper Running TeamViewer Running Themes Running Time Broker Running Touch Keyboard and Handwriting Panel Service Running Update Orchestrator Service Running User Data Access_55c1b9 Running User Data Storage_55c1b9 Running User Manager Running User Profile Service Running Virtual Disk Running Web Account Manager Running Windows Audio Running Windows Audio Endpoint Builder Running Windows Biometric Service Running Windows Connection Manager Running Windows Defender Firewall Running Windows Event Log Running Windows Font Cache Service Running Windows License Manager Service Running Windows Management Instrumentation Running Windows Presentation Foundation Font Cache 3.0.0.0 Running Windows Push Notifications System Service Running Windows Push Notifications User Service_55c1b9 Running Windows Push Notifications User Service_5f6a3 Running Windows Search Running Windows Security Service Running Windows Update Running Windows Update Medic Service Running WinHTTP Web Proxy Auto-Discovery Service Running WLAN AutoConfig Running Workstation Stopped ActiveX Installer (AxInstSV) Stopped Agent Activation Runtime_55c1b9 Stopped Agent Activation Runtime_5f6a3 Stopped AllJoyn Router Service Stopped App Readiness Stopped Application Identity Stopped Application Layer Gateway Service Stopped Auto Time Zone Updater Stopped Background Intelligent Transfer Service Stopped BitLocker Drive Encryption Service Stopped Block Level Backup Engine Service Stopped Bluetooth User Support Service_55c1b9 Stopped Bluetooth User Support Service_5f6a3 Stopped CaptureService_55c1b9 Stopped CaptureService_5f6a3 Stopped Cellular Time Stopped Certificate Propagation Stopped COM+ System Application Stopped ConsentUX_55c1b9 Stopped ConsentUX_5f6a3 Stopped Contact Data_5f6a3 Stopped CredentialEnrollmentManagerUserSvc_55c1b9 Stopped CredentialEnrollmentManagerUserSvc_5f6a3 Stopped Data Sharing Service Stopped Device Install Service Stopped Device Management Enrollment Service Stopped Device Management Wireless Application Protocol (WAP) Push message Routing Service Stopped Device Setup Manager Stopped DeviceAssociationBroker_55c1b9 Stopped DeviceAssociationBroker_5f6a3 Stopped DevicePicker_55c1b9 Stopped DevicePicker_5f6a3 Stopped DevicesFlow_55c1b9 Stopped DevicesFlow_5f6a3 Stopped DevQuery Background Discovery Broker Stopped Diagnostic Execution Service Stopped Display Enhancement Service Stopped Distributed Transaction Coordinator Stopped Downloaded Maps Manager Stopped Embedded Mode Stopped Encrypting File System (EFS) Stopped Enterprise App Management Service Stopped Extensible Authentication Protocol Stopped Fax Stopped File History Service Stopped Function Discovery Provider Host Stopped Function Discovery Resource Publication Stopped GameDVR and Broadcast User Service_55c1b9 Stopped GameDVR and Broadcast User Service_5f6a3 Stopped Google Chrome Elevation Service (GoogleChromeElevationService) Stopped Google Update Service (gupdate) Stopped Google Update Service (gupdatem) Stopped GraphicsPerfSvc Stopped HV Host Service Stopped Hyper-V Data Exchange Service Stopped Hyper-V Guest Service Interface Stopped Hyper-V Guest Shutdown Service Stopped Hyper-V Heartbeat Service Stopped Hyper-V PowerShell Direct Service Stopped Hyper-V Remote Desktop Virtualization Service Stopped Hyper-V Time Synchronization Service Stopped Hyper-V Volume Shadow Copy Requestor Stopped IKE and AuthIP IPsec Keying Modules Stopped Intel Content Protection HECI Service Stopped Internet Connection Sharing (ICS) Stopped IP Translation Configuration Service Stopped IPsec Policy Agent Stopped KtmRm for Distributed Transaction Coordinator Stopped Language Experience Service Stopped Link-Layer Topology Discovery Mapper Stopped Local Profile Assistant Service Stopped MessagingService_55c1b9 Stopped MessagingService_5f6a3 Stopped Microsoft Diagnostics Hub Standard Collector Service Stopped Microsoft Edge Elevation Service (MicrosoftEdgeElevationService) Stopped Microsoft Edge Update Service (edgeupdate) Stopped Microsoft Edge Update Service (edgeupdatem) Stopped Microsoft iSCSI Initiator Service Stopped Microsoft Software Shadow Copy Provider Stopped Microsoft Storage Spaces SMP Stopped Microsoft Update Health Service Stopped Microsoft Windows SMS Router Service. Stopped Natural Authentication Stopped Net.Tcp Port Sharing Service Stopped Netlogon Stopped Network Connected Devices Auto-Setup Stopped Network Connections Stopped Network Connectivity Assistant Stopped Network Setup Service Stopped OpenSSH Authentication Agent Stopped Optimize drives Stopped Parental Controls Stopped Payments and NFC/SE Manager Stopped Peer Name Resolution Protocol Stopped Peer Networking Grouping Stopped Performance Counter DLL Host Stopped Performance Logs & Alerts Stopped PNRP Machine Name Publication Service Stopped Portable Device Enumerator Service Stopped Printer Extensions and Notifications Stopped PrintWorkflow_55c1b9 Stopped PrintWorkflow_5f6a3 Stopped Problem Reports Control Panel Support Stopped Quality Windows Audio Video Experience Stopped Recommended Troubleshooting Service Stopped Remote Access Auto Connection Manager Stopped Remote Desktop Configuration Stopped Remote Desktop Services Stopped Remote Desktop Services UserMode Port Redirector Stopped Remote Procedure Call (RPC) Locator Stopped Remote Registry Stopped Retail Demo Service Stopped Routing and Remote Access Stopped Secondary Logon Stopped Sensor Data Service Stopped Sensor Monitoring Service Stopped Sensor Service Stopped Shared PC Account Manager Stopped Smart Card Stopped Smart Card Device Enumeration Service Stopped Smart Card Removal Policy Stopped SNMP Trap Stopped Software Protection Stopped Spatial Data Service Stopped Spot Verifier Stopped Still Image Acquisition Events Stopped Storage Tiers Management Stopped Telephony Stopped Udk User Service_55c1b9 Stopped Udk User Service_5f6a3 Stopped UPnP Device Host Stopped User Data Access_5f6a3 Stopped User Data Storage_5f6a3 Stopped Volume Shadow Copy Stopped Volumetric Audio Compositor Service Stopped WalletService Stopped WarpJITSvc Stopped WebClient Stopped Wi-Fi Direct Services Connection Manager Service Stopped Windows Backup Stopped Windows Camera Frame Server Stopped Windows Connect Now - Config Registrar Stopped Windows Encryption Provider Host Service Stopped Windows Error Reporting Service Stopped Windows Event Collector Stopped Windows Image Acquisition (WIA) Stopped Windows Insider Service Stopped Windows Installer Stopped Windows Management Service Stopped Windows Media Player Network Sharing Service Stopped Windows Mixed Reality OpenXR Service Stopped Windows Mobile Hotspot Service Stopped Windows Modules Installer Stopped Windows Perception Service Stopped Windows Perception Simulation Service Stopped Windows PushToInstall Service Stopped Windows Remote Management (WS-Management) Stopped Windows Time Stopped Wired AutoConfig Stopped WMI Performance Adapter Stopped Work Folders Stopped WWAN AutoConfig Stopped Xbox Accessory Management Service Stopped Xbox Live Auth Manager Stopped Xbox Live Game Save Stopped Xbox Live Networking Service TimeZone TimeZone GMT -6:00 Hours Language English (United States) Location United States Format English (United States) Currency $ Date Format M/d/yyyy Time Format h:mm:ss tt Scheduler 6/17/2022 9:33 PM; GoogleUpdateTaskMachineCore 6/17/2022 9:33 PM; GoogleUpdateTaskMachineUA 6/17/2022 9:34 PM; MicrosoftEdgeUpdateTaskMachineUA 6/17/2022 10:04 PM; MicrosoftEdgeUpdateTaskMachineCore1d6f749b539e1a6 6/17/2022 10:35 PM; OneDrive Reporting Task-S-1-5-21-435610278-2940156754-2573902651-1000 6/17/2022 10:46 PM; OneDrive Reporting Task-S-1-5-21-435610278-2940156754-2573902651-1073 6/18/2022 1:26 PM; MicrosoftEdgeUpdateTaskMachineCore 6/18/2022 11:18 PM; OneDrive Standalone Update Task-S-1-5-21-435610278-2940156754-2573902651-1073 6/19/2022 12:07 AM; OneDrive Standalone Update Task-S-1-5-21-435610278-2940156754-2573902651-1000 CCleanerSkipUAC Hotfixes Installed 6/18/2022 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.367.1736.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 6/18/2022 2022-04 Update for Windows 10 Version 20H2 for x64-based Systems (KB5005463) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 6/18/2022 Logitech - HIDClass - 1.10.80.0 Logitech HIDClass driver update released in August 2021 2/22/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.1570.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/21/2021 Update for Removal of Adobe Flash Player for Windows 10 Version 2004 for x64-based systems (KB4577586) This update will remove Adobe Flash Player from your Windows machine. After you install this item, you may have to restart your computer. 2/21/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.1540.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/21/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.1529.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/19/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.1390.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/19/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.1390.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/12/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.852.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/12/2021 Update for Microsoft Defender Antivirus antimalware platform - KB4052623 (Version 4.18.2101.9) This package will update Microsoft Defender Antivirus antimalware platform’s components on the user machine. 2/11/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.767.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/11/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.767.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/9/2021 2021-02 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 2004 for x64 (KB4601050) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 2/9/2021 Windows Malicious Software Removal Tool x64 - v5.86 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 2/9/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.612.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/8/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.532.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/7/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.452.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/6/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.384.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/4/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.231.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/3/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.156.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/3/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.146.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/3/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.86.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/2/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.67.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/1/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.329.3327.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 1/31/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.329.3234.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 1/31/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.329.3220.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 1/31/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.329.3208.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 1/31/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.329.3195.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 1/30/2021 2021-01 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 2004 for x64 (KB4586876) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 1/30/2021 2020-10 Security Update for Adobe Flash Player for Windows 10 Version 2004 for x64-based Systems (KB4580325) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 1/30/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.329.3175.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 1/30/2021 Feature update to Windows 10, version 2004 Install the latest update for Windows 10: Windows 10, version 2004. Not Installed 2/21/2021 Feature update to Windows 10, version 20H2 Installation Status In Progress Install the latest update for Windows 10: Windows 10, version 20H2. 2/21/2021 2021-01 Update for Windows 10 Version 2004 for x64-based Systems (KB4023057) Installation Status In Progress A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 2/21/2021 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.331.1529.0) Installation Status Failed Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2/11/2021 2021-02 Cumulative Update for Windows 10 Version 2004 for x64-based Systems (KB4601319) Installation Status In Progress Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 1/30/2021 2020-11 Update for Windows 10 Version 2004 for x64-based Systems (KB4023057) Installation Status In Progress A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. System Folders Application Data C:\ProgramData Cookies C:\Users\mdhve\AppData\Local\Microsoft\Windows\INetCookies Desktop C:\Users\mdhve\Desktop Documents C:\Users\Public\Documents Fonts C:\WINDOWS\Fonts Global Favorites C:\Users\mdhve\Favorites Internet History C:\Users\mdhve\AppData\Local\Microsoft\Windows\History Local Application Data C:\Users\mdhve\AppData\Local Music C:\Users\Public\Music Path for burning CD C:\Users\mdhve\AppData\Local\Microsoft\Windows\Burn\Burn Physical Desktop C:\Users\mdhve\Desktop Pictures C:\Users\Public\Pictures Program Files C:\Program Files Public Desktop C:\Users\Public\Desktop Start Menu C:\ProgramData\Microsoft\Windows\Start Menu Start Menu Programs C:\ProgramData\Microsoft\Windows\Start Menu\Programs Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Templates C:\ProgramData\Microsoft\Windows\Templates Temporary Internet Files C:\Users\mdhve\AppData\Local\Microsoft\Windows\INetCache User Favorites C:\Users\mdhve\Favorites Videos C:\Users\Public\Videos Windows Directory C:\WINDOWS Windows/System C:\WINDOWS\system32 Process List ABService.exe Process ID 3768 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\AOMEI Backupper\ABService.exe Memory Usage 12 MB Peak Memory Usage 21 MB Agent.exe Process ID 3808 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe Memory Usage 19 MB Peak Memory Usage 27 MB ApplicationFrameHost.exe Process ID 12984 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\ApplicationFrameHost.exe Memory Usage 22 MB Peak Memory Usage 29 MB audiodg.exe Process ID 10088 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\audiodg.exe Memory Usage 12 MB Peak Memory Usage 13 MB chrome.exe Process ID 13768 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 117 MB Peak Memory Usage 142 MB chrome.exe Process ID 5528 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 8.17 MB Peak Memory Usage 8.19 MB chrome.exe Process ID 13924 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 50 MB Peak Memory Usage 51 MB chrome.exe Process ID 12112 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 413 MB Peak Memory Usage 416 MB chrome.exe Process ID 10992 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 46 MB Peak Memory Usage 46 MB chrome.exe Process ID 12484 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 43 MB Peak Memory Usage 44 MB chrome.exe Process ID 8432 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 18 MB Peak Memory Usage 19 MB chrome.exe Process ID 11236 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 46 MB Peak Memory Usage 47 MB chrome.exe Process ID 10036 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 17 MB Peak Memory Usage 17 MB chrome.exe Process ID 7644 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 29 MB Peak Memory Usage 29 MB chrome.exe Process ID 5368 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 52 MB Peak Memory Usage 53 MB chrome.exe Process ID 4560 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 67 MB Peak Memory Usage 69 MB chrome.exe Process ID 4544 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 52 MB Peak Memory Usage 63 MB chrome.exe Process ID 11336 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 70 MB Peak Memory Usage 87 MB chrome.exe Process ID 13568 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 77 MB Peak Memory Usage 77 MB chrome.exe Process ID 7616 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 85 MB Peak Memory Usage 103 MB chrome.exe Process ID 1520 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 57 MB Peak Memory Usage 61 MB chrome.exe Process ID 9780 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 72 MB Peak Memory Usage 93 MB chrome.exe Process ID 9372 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 41 MB Peak Memory Usage 41 MB chrome.exe Process ID 2092 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 57 MB Peak Memory Usage 57 MB chrome.exe Process ID 608 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 47 MB Peak Memory Usage 48 MB chrome.exe Process ID 3472 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 57 MB Peak Memory Usage 79 MB chrome.exe Process ID 13544 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 42 MB Peak Memory Usage 42 MB chrome.exe Process ID 10352 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 41 MB Peak Memory Usage 41 MB chrome.exe Process ID 9560 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 56 MB Peak Memory Usage 57 MB csrss.exe Process ID 600 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 1.93 MB Peak Memory Usage 5.51 MB csrss.exe Process ID 2220 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 6.17 MB Peak Memory Usage 18 MB csrss.exe Process ID 708 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 2.37 MB Peak Memory Usage 44 MB ctfmon.exe Process ID 9060 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\ctfmon.exe Memory Usage 16 MB Peak Memory Usage 20 MB dasHost.exe Process ID 2264 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\dasHost.exe Memory Usage 5.63 MB Peak Memory Usage 8.57 MB dasHost.exe Process ID 2832 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\dasHost.exe Memory Usage 2.46 MB Peak Memory Usage 4.52 MB dllhost.exe Process ID 9704 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\dllhost.exe Memory Usage 6.50 MB Peak Memory Usage 13 MB dllhost.exe Process ID 8780 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\dllhost.exe Memory Usage 10 MB Peak Memory Usage 12 MB dwm.exe Process ID 1044 User DWM-1 Domain Window Manager Path C:\Windows\System32\dwm.exe Memory Usage 11 MB Peak Memory Usage 69 MB dwm.exe Process ID 9388 User DWM-2 Domain Window Manager Path C:\Windows\System32\dwm.exe Memory Usage 32 MB Peak Memory Usage 83 MB Everything.exe Process ID 5536 User mdhve Domain DELL-INSPIRON Path C:\Program Files\Everything\Everything.exe Memory Usage 40 MB Peak Memory Usage 79 MB Everything.exe Process ID 3832 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Everything\Everything.exe Memory Usage 6.79 MB Peak Memory Usage 56 MB explorer.exe Process ID 6264 User Cookie Domain DELL-INSPIRON Path C:\Windows\explorer.exe Memory Usage 44 MB Peak Memory Usage 100 MB explorer.exe Process ID 10364 User mdhve Domain DELL-INSPIRON Path C:\Windows\explorer.exe Memory Usage 70 MB Peak Memory Usage 134 MB fontdrvhost.exe Process ID 968 User UMFD-1 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 1.12 MB Peak Memory Usage 5.16 MB fontdrvhost.exe Process ID 9264 User UMFD-2 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 6.79 MB Peak Memory Usage 8.46 MB fontdrvhost.exe Process ID 972 User UMFD-0 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 1.07 MB Peak Memory Usage 3.84 MB GoogleCrashHandler.exe Process ID 7504 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler.exe Memory Usage 304 KB Peak Memory Usage 7.66 MB GoogleCrashHandler64.exe Process ID 1792 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler64.exe Memory Usage 68 KB Peak Memory Usage 7.22 MB googledrivesync.exe Process ID 292 User mdhve Domain DELL-INSPIRON Path C:\Program Files\Google\Drive\googledrivesync.exe Memory Usage 648 KB Peak Memory Usage 19 MB googledrivesync.exe Process ID 4016 User mdhve Domain DELL-INSPIRON Path C:\Program Files\Google\Drive\googledrivesync.exe Memory Usage 15 MB Peak Memory Usage 161 MB GoogleUpdate.exe Process ID 3576 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Memory Usage 196 KB Peak Memory Usage 11 MB igfxCUIService.exe Process ID 1788 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\igfxCUIService.exe Memory Usage 5.80 MB Peak Memory Usage 9.58 MB igfxEM.exe Process ID 7840 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\igfxEM.exe Memory Usage 8.59 MB Peak Memory Usage 13 MB igfxEM.exe Process ID 1392 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\igfxEM.exe Memory Usage 12 MB Peak Memory Usage 13 MB igfxHK.exe Process ID 4468 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\igfxHK.exe Memory Usage 6.61 MB Peak Memory Usage 10 MB igfxHK.exe Process ID 1532 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\igfxHK.exe Memory Usage 9.39 MB Peak Memory Usage 10 MB igfxTray.exe Process ID 6272 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\igfxTray.exe Memory Usage 10 MB Peak Memory Usage 11 MB igfxTray.exe Process ID 5544 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\igfxTray.exe Memory Usage 8.75 MB Peak Memory Usage 12 MB LockApp.exe Process ID 5932 User Cookie Domain DELL-INSPIRON Path C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe Memory Usage 42 MB Peak Memory Usage 51 MB LogonUI.exe Process ID 1036 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\LogonUI.exe Memory Usage 18 MB Peak Memory Usage 93 MB lsass.exe Process ID 840 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\lsass.exe Memory Usage 15 MB Peak Memory Usage 22 MB Memory Compression Process ID 1740 User SYSTEM Domain NT AUTHORITY Memory Usage 98 MB Peak Memory Usage 148 MB MicrosoftEdgeUpdate.exe Process ID 6024 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Memory Usage 236 KB Peak Memory Usage 9.84 MB MoUsoCoreWorker.exe Process ID 9784 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\MoUsoCoreWorker.exe Memory Usage 12 MB Peak Memory Usage 59 MB MsMpEng.exe Process ID 7032 User SYSTEM Domain NT AUTHORITY Path C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe Memory Usage 223 MB Peak Memory Usage 464 MB NisSrv.exe Process ID 8704 User LOCAL SERVICE Domain NT AUTHORITY Path C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe Memory Usage 13 MB Peak Memory Usage 14 MB OneDrive.exe Process ID 9940 User mdhve Domain DELL-INSPIRON Path C:\Users\mdhve\AppData\Local\Microsoft\OneDrive\OneDrive.exe Memory Usage 15 MB Peak Memory Usage 55 MB PCHealthCheck.exe Process ID 1204 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\PCHealthCheck\PCHealthCheck.exe Memory Usage 6.94 MB Peak Memory Usage 114 MB PresentationFontCache.exe Process ID 6508 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe Memory Usage 16 MB Peak Memory Usage 19 MB RAVBg64.exe Process ID 14064 User mdhve Domain DELL-INSPIRON Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe Memory Usage 3.67 MB Peak Memory Usage 15 MB RAVBg64.exe Process ID 1608 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe Memory Usage 8.67 MB Peak Memory Usage 15 MB RAVBg64.exe Process ID 2896 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe Memory Usage 8.28 MB Peak Memory Usage 14 MB RAVBg64.exe Process ID 2884 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe Memory Usage 7.35 MB Peak Memory Usage 15 MB RAVBg64.exe Process ID 2336 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe Memory Usage 8.33 MB Peak Memory Usage 15 MB Registry Process ID 92 User SYSTEM Domain NT AUTHORITY Memory Usage 23 MB Peak Memory Usage 137 MB RtkAudioService64.exe Process ID 2764 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe Memory Usage 4.44 MB Peak Memory Usage 8.21 MB RtkNGUI64.exe Process ID 13932 User mdhve Domain DELL-INSPIRON Path C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe Memory Usage 5.11 MB Peak Memory Usage 15 MB RuntimeBroker.exe Process ID 12100 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 24 MB Peak Memory Usage 71 MB RuntimeBroker.exe Process ID 7572 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 6.01 MB Peak Memory Usage 33 MB RuntimeBroker.exe Process ID 5928 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 17 MB Peak Memory Usage 22 MB RuntimeBroker.exe Process ID 8092 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 4.94 MB Peak Memory Usage 30 MB RuntimeBroker.exe Process ID 8196 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 7.14 MB Peak Memory Usage 37 MB RuntimeBroker.exe Process ID 5156 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 11 MB Peak Memory Usage 19 MB RuntimeBroker.exe Process ID 11340 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 21 MB Peak Memory Usage 33 MB RuntimeBroker.exe Process ID 4040 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 13 MB Peak Memory Usage 22 MB SearchApp.exe Process ID 11396 User mdhve Domain DELL-INSPIRON Path C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe Memory Usage 23 MB Peak Memory Usage 152 MB SearchApp.exe Process ID 6676 User Cookie Domain DELL-INSPIRON Path C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe Memory Usage 1.59 MB Peak Memory Usage 144 MB SearchIndexer.exe Process ID 7564 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchIndexer.exe Memory Usage 25 MB Peak Memory Usage 31 MB SecurityHealthService.exe Process ID 4024 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SecurityHealthService.exe Memory Usage 18 MB Peak Memory Usage 18 MB services.exe Process ID 760 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\services.exe Memory Usage 5.97 MB Peak Memory Usage 10 MB SettingSyncHost.exe Process ID 116 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\SettingSyncHost.exe Memory Usage 11 MB Peak Memory Usage 83 MB SgrmBroker.exe Process ID 8828 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SgrmBroker.exe Memory Usage 5.09 MB Peak Memory Usage 8.21 MB ShellExperienceHost.exe Process ID 14228 User mdhve Domain DELL-INSPIRON Path C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe Memory Usage 8.51 MB Peak Memory Usage 50 MB sihost.exe Process ID 9696 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\sihost.exe Memory Usage 21 MB Peak Memory Usage 30 MB sihost.exe Process ID 5308 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\sihost.exe Memory Usage 7.76 MB Peak Memory Usage 26 MB Skype.exe Process ID 2904 User Cookie Domain DELL-INSPIRON Path C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe Memory Usage 1.25 MB Peak Memory Usage 24 MB Skype.exe Process ID 9736 User Cookie Domain DELL-INSPIRON Path C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe Memory Usage 2.77 MB Peak Memory Usage 40 MB Skype.exe Process ID 9352 User Cookie Domain DELL-INSPIRON Path C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe Memory Usage 9.05 MB Peak Memory Usage 100 MB Skype.exe Process ID 13164 User Cookie Domain DELL-INSPIRON Path C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe Memory Usage 3.05 MB Peak Memory Usage 19 MB Skype.exe Process ID 6536 User Cookie Domain DELL-INSPIRON Path C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe Memory Usage 3.27 MB Peak Memory Usage 149 MB Skype.exe Process ID 10224 User Cookie Domain DELL-INSPIRON Path C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe Memory Usage 2.16 MB Peak Memory Usage 26 MB smartscreen.exe Process ID 1644 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\smartscreen.exe Memory Usage 23 MB Peak Memory Usage 23 MB smss.exe Process ID 420 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\smss.exe Memory Usage 340 KB Peak Memory Usage 1.25 MB Speccy64.exe Process ID 12416 User mdhve Domain DELL-INSPIRON Path C:\Program Files\Speccy\Speccy64.exe Memory Usage 33 MB Peak Memory Usage 34 MB spoolsv.exe Process ID 3424 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\spoolsv.exe Memory Usage 18 MB Peak Memory Usage 18 MB StartMenuExperienceHost.exe Process ID 7992 User Cookie Domain DELL-INSPIRON Path C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe Memory Usage 5.17 MB Peak Memory Usage 73 MB StartMenuExperienceHost.exe Process ID 11872 User mdhve Domain DELL-INSPIRON Path C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe Memory Usage 53 MB Peak Memory Usage 77 MB svchost.exe Process ID 2940 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 19 MB Peak Memory Usage 69 MB svchost.exe Process ID 8920 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.96 MB Peak Memory Usage 126 MB svchost.exe Process ID 8848 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 14 MB svchost.exe Process ID 7844 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 12 MB svchost.exe Process ID 9724 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 20 MB svchost.exe Process ID 10000 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 11 MB svchost.exe Process ID 5492 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.73 MB Peak Memory Usage 10 MB svchost.exe Process ID 10228 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 39 MB svchost.exe Process ID 8952 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.34 MB Peak Memory Usage 6.46 MB svchost.exe Process ID 9572 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.10 MB Peak Memory Usage 7.54 MB svchost.exe Process ID 1688 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.42 MB Peak Memory Usage 11 MB svchost.exe Process ID 948 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 23 MB Peak Memory Usage 30 MB svchost.exe Process ID 10068 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 13 MB svchost.exe Process ID 552 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 15 MB svchost.exe Process ID 712 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.73 MB Peak Memory Usage 8.46 MB svchost.exe Process ID 1244 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.25 MB Peak Memory Usage 10 MB svchost.exe Process ID 1252 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.95 MB Peak Memory Usage 16 MB svchost.exe Process ID 1368 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.43 MB Peak Memory Usage 13 MB svchost.exe Process ID 1376 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.28 MB Peak Memory Usage 6.42 MB svchost.exe Process ID 1524 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 13 MB svchost.exe Process ID 9040 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\svchost.exe Memory Usage 23 MB Peak Memory Usage 29 MB svchost.exe Process ID 8684 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\svchost.exe Memory Usage 29 MB Peak Memory Usage 38 MB svchost.exe Process ID 1612 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 62 MB Peak Memory Usage 95 MB svchost.exe Process ID 1628 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.28 MB Peak Memory Usage 5.80 MB svchost.exe Process ID 1672 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.88 MB Peak Memory Usage 5.39 MB svchost.exe Process ID 1680 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.88 MB Peak Memory Usage 6.06 MB svchost.exe Process ID 1696 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.19 MB Peak Memory Usage 8.64 MB svchost.exe Process ID 1704 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.05 MB Peak Memory Usage 12 MB svchost.exe Process ID 1712 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.91 MB Peak Memory Usage 12 MB svchost.exe Process ID 5076 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\svchost.exe Memory Usage 14 MB Peak Memory Usage 23 MB svchost.exe Process ID 1720 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.63 MB Peak Memory Usage 7.82 MB svchost.exe Process ID 1636 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.74 MB Peak Memory Usage 8.90 MB svchost.exe Process ID 12064 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\svchost.exe Memory Usage 9.72 MB Peak Memory Usage 18 MB svchost.exe Process ID 1728 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 21 MB svchost.exe Process ID 1984 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.75 MB Peak Memory Usage 8.37 MB svchost.exe Process ID 1312 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.92 MB Peak Memory Usage 7.15 MB svchost.exe Process ID 2064 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.94 MB Peak Memory Usage 7.31 MB svchost.exe Process ID 12976 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 17 MB svchost.exe Process ID 2096 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.46 MB Peak Memory Usage 9.20 MB svchost.exe Process ID 2136 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.74 MB Peak Memory Usage 8.23 MB svchost.exe Process ID 2152 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.04 MB Peak Memory Usage 8.58 MB svchost.exe Process ID 2176 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.12 MB Peak Memory Usage 13 MB svchost.exe Process ID 2280 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.82 MB Peak Memory Usage 7.50 MB svchost.exe Process ID 2296 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 40 MB svchost.exe Process ID 2372 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 41 MB svchost.exe Process ID 2476 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.12 MB Peak Memory Usage 12 MB svchost.exe Process ID 2624 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.32 MB Peak Memory Usage 9.90 MB svchost.exe Process ID 2652 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 14 MB svchost.exe Process ID 4676 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 16 MB svchost.exe Process ID 2980 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.29 MB Peak Memory Usage 8.65 MB svchost.exe Process ID 7516 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.91 MB Peak Memory Usage 9.95 MB svchost.exe Process ID 2988 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.04 MB Peak Memory Usage 6.70 MB svchost.exe Process ID 2996 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.05 MB Peak Memory Usage 10 MB svchost.exe Process ID 13816 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.65 MB Peak Memory Usage 9.94 MB svchost.exe Process ID 13744 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 11 MB svchost.exe Process ID 12456 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.16 MB Peak Memory Usage 7.22 MB svchost.exe Process ID 3096 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.86 MB Peak Memory Usage 7.46 MB svchost.exe Process ID 3172 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 18 MB svchost.exe Process ID 3348 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 13 MB svchost.exe Process ID 3456 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 23 MB svchost.exe Process ID 3536 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.41 MB Peak Memory Usage 8.34 MB svchost.exe Process ID 3780 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 72 MB svchost.exe Process ID 3788 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 28 MB Peak Memory Usage 75 MB svchost.exe Process ID 3800 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 39 MB Peak Memory Usage 39 MB svchost.exe Process ID 3856 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.72 MB Peak Memory Usage 11 MB svchost.exe Process ID 3912 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.22 MB Peak Memory Usage 7.09 MB svchost.exe Process ID 3924 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.30 MB Peak Memory Usage 9.37 MB svchost.exe Process ID 3964 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.77 MB Peak Memory Usage 5.98 MB svchost.exe Process ID 3988 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 19 MB Peak Memory Usage 21 MB svchost.exe Process ID 4060 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.33 MB Peak Memory Usage 5.77 MB svchost.exe Process ID 4292 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 10 MB Peak Memory Usage 13 MB svchost.exe Process ID 5352 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\svchost.exe Memory Usage 5.02 MB Peak Memory Usage 30 MB svchost.exe Process ID 5408 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 45 MB svchost.exe Process ID 5716 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 22 MB svchost.exe Process ID 5748 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.65 MB Peak Memory Usage 8.38 MB svchost.exe Process ID 6176 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 19 MB svchost.exe Process ID 6380 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.07 MB Peak Memory Usage 8.92 MB svchost.exe Process ID 6944 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.97 MB Peak Memory Usage 8.27 MB svchost.exe Process ID 6988 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.23 MB Peak Memory Usage 9.96 MB svchost.exe Process ID 7076 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 21 MB Peak Memory Usage 175 MB svchost.exe Process ID 6284 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 18 MB svchost.exe Process ID 2396 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.08 MB Peak Memory Usage 7.73 MB svchost.exe Process ID 14136 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.18 MB Peak Memory Usage 5.19 MB System Process ID 4 Memory Usage 1.79 MB Peak Memory Usage 31 MB System Idle Process Process ID 0 taskhostw.exe Process ID 6184 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\taskhostw.exe Memory Usage 14 MB Peak Memory Usage 20 MB taskhostw.exe Process ID 1768 User mdhve Domain DELL-INSPIRON Path C:\Windows\System32\taskhostw.exe Memory Usage 15 MB Peak Memory Usage 25 MB taskhostw.exe Process ID 5452 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\taskhostw.exe Memory Usage 16 MB Peak Memory Usage 18 MB TeamViewer.exe Process ID 6300 User Cookie Domain DELL-INSPIRON Path C:\Program Files (x86)\TeamViewer\TeamViewer.exe Memory Usage 16 MB Peak Memory Usage 61 MB TeamViewer.exe Process ID 10436 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\TeamViewer\TeamViewer.exe Memory Usage 19 MB Peak Memory Usage 66 MB TeamViewer_Service.exe Process ID 3972 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe Memory Usage 13 MB Peak Memory Usage 34 MB TextInputHost.exe Process ID 6828 User mdhve Domain DELL-INSPIRON Path C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe Memory Usage 8.88 MB Peak Memory Usage 44 MB TodoBackupService.exe Process ID 3236 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe Memory Usage 8.68 MB Peak Memory Usage 14 MB TrayProcess.exe Process ID 11704 User mdhve Domain DELL-INSPIRON Path C:\Program Files (x86)\EaseUS\Todo Backup\bin\TrayProcess.exe Memory Usage 19 MB Peak Memory Usage 28 MB tv_w32.exe Process ID 10940 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\TeamViewer\tv_w32.exe Memory Usage 4.81 MB Peak Memory Usage 9.81 MB tv_w32.exe Process ID 5580 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\TeamViewer\tv_w32.exe Memory Usage 9.29 MB Peak Memory Usage 9.69 MB tv_x64.exe Process ID 10948 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\TeamViewer\tv_x64.exe Memory Usage 4.64 MB Peak Memory Usage 9.58 MB tv_x64.exe Process ID 2728 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\TeamViewer\tv_x64.exe Memory Usage 9.07 MB Peak Memory Usage 9.54 MB UserOOBEBroker.exe Process ID 7100 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\oobe\UserOOBEBroker.exe Memory Usage 3.95 MB Peak Memory Usage 8.94 MB UserOOBEBroker.exe Process ID 5004 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\oobe\UserOOBEBroker.exe Memory Usage 8.43 MB Peak Memory Usage 8.89 MB vds.exe Process ID 4784 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\vds.exe Memory Usage 10 MB Peak Memory Usage 12 MB wininit.exe Process ID 696 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wininit.exe Memory Usage 1.10 MB Peak Memory Usage 7.02 MB winlogon.exe Process ID 800 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\winlogon.exe Memory Usage 2.09 MB Peak Memory Usage 17 MB winlogon.exe Process ID 8444 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\winlogon.exe Memory Usage 8.45 MB Peak Memory Usage 15 MB WmiPrvSE.exe Process ID 9768 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 13 MB Peak Memory Usage 13 MB WmiPrvSE.exe Process ID 7292 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 9.06 MB Peak Memory Usage 9.07 MB WWAHost.exe Process ID 8016 User Cookie Domain DELL-INSPIRON Path C:\Windows\System32\WWAHost.exe Memory Usage 8.47 MB Peak Memory Usage 174 MB Security Options Accounts: Administrator account status Disabled Accounts: Block Microsoft accounts Not Defined Accounts: Guest account status Disabled Accounts: Limit local account use of blank passwords to console logon only Enabled Accounts: Rename administrator account Administrator Accounts: Rename guest account Guest Audit: Audit the access of global system objects Disabled Audit: Audit the use of Backup and Restore privilege Disabled Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings Not Defined Audit: Shut down system immediately if unable to log security audits Disabled DCOM: Machine Access Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined DCOM: Machine Launch Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined Devices: Allow undock without having to log on Enabled Devices: Allowed to format and eject removable media Not Defined Devices: Prevent users from installing printer drivers Disabled Devices: Restrict CD-ROM access to locally logged-on user only Not Defined Devices: Restrict floppy access to locally logged-on user only Not Defined Domain controller: Allow server operators to schedule tasks Not Defined Domain controller: Allow vulnerable Netlogon secure channel connections Not Defined Domain controller: LDAP server channel binding token requirements Not Defined Domain controller: LDAP server signing requirements Not Defined Domain controller: Refuse machine account password changes Not Defined Domain member: Digitally encrypt or sign secure channel data (always) Enabled Domain member: Digitally encrypt secure channel data (when possible) Enabled Domain member: Digitally sign secure channel data (when possible) Enabled Domain member: Disable machine account password changes Disabled Domain member: Maximum machine account password age 30 days Domain member: Require strong (Windows 2000 or later) session key Enabled Interactive logon: Display user information when the session is locked Not Defined Interactive logon: Do not require CTRL+ALT+DEL Not Defined Interactive logon: Don't display last signed-in Not Defined Interactive logon: Don't display username at sign-in Not Defined Interactive logon: Machine account lockout threshold Not Defined Interactive logon: Machine inactivity limit Not Defined Interactive logon: Message text for users attempting to log on Not Defined Interactive logon: Message title for users attempting to log on Interactive logon: Number of previous logons to cache (in case domain controller is not available) 10 logons Interactive logon: Prompt user to change password before expiration 5 days Interactive logon: Require Domain Controller authentication to unlock workstation Disabled Interactive logon: Require Windows Hello for Business or smart card Not Defined Interactive logon: Smart card removal behavior Not Defined Microsoft network client: Digitally sign communications (always) Disabled Microsoft network client: Digitally sign communications (if server agrees) Enabled Microsoft network client: Send unencrypted password to third-party SMB servers Disabled Microsoft network server: Amount of idle time required before suspending session Not Defined Microsoft network server: Attempt S4U2Self to obtain claim information Not Defined Microsoft network server: Digitally sign communications (always) Not Defined Microsoft network server: Digitally sign communications (if client agrees) Not Defined Microsoft network server: Disconnect clients when logon hours expire Not Defined Microsoft network server: Server SPN target name validation level Not Defined Minimum password length audit Not Defined Network access: Allow anonymous SID/Name translation Disabled Network access: Do not allow anonymous enumeration of SAM accounts Enabled Network access: Do not allow anonymous enumeration of SAM accounts and shares Disabled Network access: Do not allow storage of passwords and credentials for network authentication Disabled Network access: Let Everyone permissions apply to anonymous users Disabled Network access: Named Pipes that can be accessed anonymously Network access: Remotely accessible registry paths System\CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server Applications,Software\Microsoft\Windows NT\CurrentVersion Network access: Remotely accessible registry paths and sub-paths System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\SysmonLog Network access: Restrict anonymous access to Named Pipes and Shares Enabled Network access: Restrict clients allowed to make remote calls to SAM Network access: Shares that can be accessed anonymously Not Defined Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Network security: Allow Local System to use computer identity for NTLM Not Defined Network security: Allow LocalSystem NULL session fallback Not Defined Network security: Allow PKU2U authentication requests to this computer to use online identities. Not Defined Network security: Configure encryption types allowed for Kerberos Not Defined Network security: Do not store LAN Manager hash value on next password change Enabled Network security: Force logoff when logon hours expire Disabled Network security: LAN Manager authentication level Not Defined Network security: LDAP client signing requirements Negotiate signing Network security: Minimum session security for NTLM SSP based (including secure RPC) clients Require 128-bit encryption Network security: Minimum session security for NTLM SSP based (including secure RPC) servers Require 128-bit encryption Network security: Restrict NTLM: Add remote server exceptions for NTLM authentication Not Defined Network security: Restrict NTLM: Add server exceptions in this domain Not Defined Network security: Restrict NTLM: Audit Incoming NTLM Traffic Not Defined Network security: Restrict NTLM: Audit NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Incoming NTLM traffic Not Defined Network security: Restrict NTLM: NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Outgoing NTLM traffic to remote servers Not Defined Recovery console: Allow automatic administrative logon Not Defined Recovery console: Allow floppy copy and access to all drives and all folders Not Defined Relax minimum password length limits Not Defined Shutdown: Allow system to be shut down without having to log on Not Defined Shutdown: Clear virtual memory pagefile Disabled System cryptography: Force strong key protection for user keys stored on the computer Not Defined System cryptography: Use FIPS compliant algorithms for encryption, hashing, and signing Disabled System objects: Require case insensitivity for non-Windows subsystems Enabled System objects: Strengthen default permissions of internal system objects (e.g. Symbolic Links) Enabled System settings: Optional subsystems System settings: Use Certificate Rules on Windows Executables for Software Restriction Policies Not Defined User Account Control: Admin Approval Mode for the Built-in Administrator account Not Defined User Account Control: Allow UIAccess applications to prompt for elevation without using the secure desktop Disabled User Account Control: Behavior of the elevation prompt for administrators in Admin Approval Mode Prompt for consent for non-Windows binaries User Account Control: Behavior of the elevation prompt for standard users Prompt for credentials User Account Control: Detect application installations and prompt for elevation Enabled User Account Control: Only elevate executables that are signed and validated Disabled User Account Control: Only elevate UIAccess applications that are installed in secure locations Enabled User Account Control: Run all administrators in Admin Approval Mode Enabled User Account Control: Switch to the secure desktop when prompting for elevation Enabled User Account Control: Virtualize file and registry write failures to per-user locations Enabled Device Tree ACPI x64-based PC Microsoft ACPI-Compliant System ACPI Fan ACPI Fan ACPI Fan ACPI Fan ACPI Fan ACPI Fixed Feature Button ACPI Power Button ACPI Thermal Zone ACPI Thermal Zone Intel Celeron CPU G1840 @ 2.80GHz Intel Celeron CPU G1840 @ 2.80GHz PCI Express Root Complex Intel 8 Series/C220 Series PCI Express Root Port #1 - 8C10 Intel 8 Series/C220 Series SMBus Controller - 8C22 Intel Management Engine Interface Motherboard resources PCI standard host CPU bridge System board Intel(R) HD Graphics PnP-Monitor (Standard) Intel(R) USB 3.0 eXtensible Host Controller - 1.0 (Microsoft) USB Root Hub (USB 3.0) Realtek USB 2.0 Card Reader USB Input Device HID-compliant mouse Dell Wireless 1705 Bluetooth Bluetooth Device (Personal Area Network) Microsoft Bluetooth LE Enumerator Bluetooth Device (RFCOMM Protocol TDI) Standard Serial over Bluetooth link (COM3) Standard Serial over Bluetooth link (COM4) Microsoft Bluetooth Enumerator Phonak ComPilot II Phonak ComPilot II Avrcp Transport Phonak ComPilot II Stereo Headphones (Phonak ComPilot II Stereo) Phonak ComPilot II Hands-Free AG Phonak ComPilot II Hands-Free AG Audio Headset (Phonak ComPilot II Hands-Free AG Audio) Headset (Phonak ComPilot II Hands-Free AG Audio) USB Composite Device USB Input Device HID Keyboard Device USB Input Device HID-compliant consumer control device HID-compliant device HID-compliant system controller Intel(R) 8 Series/C220 Series USB EHCI #2 - 8C2D USB Root Hub Generic USB Hub High Definition Audio Controller Realtek High Definition Audio Speakers / Headphones (Realtek High Definition Audio) Intel(R) 8 Series/C220 Series PCI Express Root Port #4 - 8C16 Realtek PCIe GBE Family Controller Intel(R) 8 Series/C220 Series PCI Express Root Port #5 - 8C18 Dell Wireless 1705 802.11b/g/n (2.4GHZ) Microsoft Wi-Fi Direct Virtual Adapter Microsoft Wi-Fi Direct Virtual Adapter #2 Intel(R) 8 Series/C220 Series USB EHCI #1 - 8C26 USB Root Hub Generic USB Hub Intel(R) H81 LPC Controller - 8C5C Direct memory access controller High precision event timer Legacy device Motherboard resources Motherboard resources Motherboard resources Motherboard resources Numeric data processor Programmable interrupt controller System CMOS/real time clock System timer Intel(R) 8 Series/C220 Chipset Family SATA AHCI Controller Hitachi HDT721064SLA360 MATSHITA DVD+-RW SW830 CPU Intel Celeron G1840 Cores 2 Threads 2 Name Intel Celeron G1840 Code Name Haswell Package Socket 1150 LGA Technology 22nm Specification Intel Celeron CPU G1840 @ 2.80GHz Family 6 Extended Family 6 Model C Extended Model 3C Stepping 3 Revision C0 Instructions MMX, SSE, SSE2, SSE3, SSSE3, SSE4.1, SSE4.2, Intel 64, NX, VMX Virtualization Supported, Enabled Hyperthreading Not supported Fan Speed 924 RPM Stock Core Speed 2800 MHz Stock Bus Speed 100 MHz Average Temperature 31 °C Caches L1 Data Cache Size 2 x 32 KBytes L1 Instructions Cache Size 2 x 32 KBytes L2 Unified Cache Size 2 x 256 KBytes L3 Unified Cache Size 2048 KBytes Cores Core 0 Core Speed 798.1 MHz Multiplier x 8.0 Bus Speed 99.8 MHz Temperature 29 °C Threads APIC ID: 0 Core 1 Core Speed 2793.3 MHz Multiplier x 28.0 Bus Speed 99.8 MHz Temperature 33 °C Threads APIC ID: 2 RAM Memory slots Total memory slots 2 Used memory slots 1 Free memory slots 1 Memory Type DDR3 Size 4096 MBytes Channels # Single DRAM Frequency 665.1 MHz CAS# Latency (CL) 9 clocks RAS# to CAS# Delay (tRCD) 9 clocks RAS# Precharge (tRP) 9 clocks Cycle Time (tRAS) 24 clocks Command Rate (CR) 1T Physical Memory Memory Usage 80 % Total Physical 3.92 GB Available Physical 764 MB Total Virtual 6.56 GB Available Virtual 1.54 GB SPD Number Of SPD Modules 1 Slot #1 Type DDR3 Size 4096 MBytes Manufacturer Hyundai Electronics Max Bandwidth PC3-12800 (800 MHz) Part Number HMT451U6AFR8C-PB Serial Number 717233330 Week/year 21 / 14 Timing table JEDEC #1 Frequency 457.1 MHz CAS# Latency 6.0 RAS# To CAS# 6 RAS# Precharge 6 tRAS 16 tRC 22 Voltage 1.500 V JEDEC #2 Frequency 533.3 MHz CAS# Latency 7.0 RAS# To CAS# 7 RAS# Precharge 7 tRAS 19 tRC 26 Voltage 1.500 V JEDEC #3 Frequency 609.5 MHz CAS# Latency 8.0 RAS# To CAS# 8 RAS# Precharge 8 tRAS 22 tRC 30 Voltage 1.500 V JEDEC #4 Frequency 685.7 MHz CAS# Latency 9.0 RAS# To CAS# 9 RAS# Precharge 9 tRAS 24 tRC 33 Voltage 1.500 V JEDEC #5 Frequency 761.9 MHz CAS# Latency 10.0 RAS# To CAS# 10 RAS# Precharge 10 tRAS 27 tRC 37 Voltage 1.500 V JEDEC #6 Frequency 800.0 MHz CAS# Latency 11.0 RAS# To CAS# 11 RAS# Precharge 11 tRAS 28 tRC 39 Voltage 1.500 V Motherboard Manufacturer Dell Inc. Model 02YRK5 (CPU 1) Version A02 Chipset Vendor Intel Chipset Model Haswell Chipset Revision 06 Southbridge Vendor Intel Southbridge Model H81 Southbridge Revision C2 System Temperature 33 °C BIOS Brand Dell Inc. Version A04 Date 4/3/2014 Voltage CPU CORE 1.716 V MEMORY CONTROLLER 1.524 V +3.3V 2.016 V +5V 3.367 V -5V -11.904 V +5V HIGH THRESHOLD 2.822 V PCI Data Slot PCI-E Slot Type PCI-E Slot Usage In Use Data lanes x16 Slot Designation PCIEX16 Characteristics 3.3V, Shared, PME Slot Number 0 Slot PCI-E Slot Type PCI-E Slot Usage In Use Data lanes x1 Slot Designation PCIEX1 Characteristics 3.3V, Shared, PME Slot Number 1 Slot PCI-E Slot Type PCI-E Slot Usage In Use Data lanes x1 Slot Designation PCIEX1 Characteristics 3.3V, Shared, PME Slot Number 2 Slot PCI-E Slot Type PCI-E Slot Usage In Use Data lanes x1 Slot Designation PCIEX1 Characteristics 3.3V, Shared, PME Slot Number 3 Graphics Monitor Name Standard Monitor on Intel HD Graphics Current Resolution 1600x900 pixels Work Resolution 1600x860 pixels State Enabled, Primary, Output devices support Monitor Width 1600 Monitor Height 900 Monitor BPP 32 bits per pixel Monitor Frequency 60 Hz Device \\.\DISPLAY1 Intel HD Graphics Manufacturer Intel Model HD Graphics Device ID 8086-0402 Revision 7 Subvendor Dell (1028) Current Performance Level Level 0 Current GPU Clock 598 MHz Driver version 20.19.15.4531 Count of performance levels : 1 Level 1 - "Perf Level 0" GPU Clock 598 MHz Storage Hard drives Hitachi HDT721064SLA360 Manufacturer Hitachi Product Family Deskstar Series Prefix Differentiator between two models with the same name Model Capacity For This Specific Drive 640GB Heads 16 Cylinders 77,825 Tracks 19,845,375 Sectors 1,250,258,625 SATA type SATA-II 3.0Gb/s Device type Fixed ATA Standard ATA8-ACS Serial Number STFDD7MG1ZYV8F Firmware Version Number STDOA31B LBA Size 48-bit LBA Power On Count 1923 times Power On Time 467.6 days Speed 7200 RPM Features S.M.A.R.T., APM, AAM, NCQ Max. Transfer Mode SATA II 3.0Gb/s Used Transfer Mode SATA II 3.0Gb/s Interface SATA Capacity 596 GB Real size 640,135,028,736 bytes RAID Type None S.M.A.R.T Status Good Temperature 49 °C Temperature Range OK (less than 50 °C) S.M.A.R.T attributes 01 Attribute name Read Error Rate Real value 0 Current 100 Worst 100 Threshold 16 Raw Value 0000000000 Status Good 02 Attribute name Throughput Performance Real value 0 Current 100 Worst 100 Threshold 54 Raw Value 0000000000 Status Good 03 Attribute name Spin-Up Time Real value 22610280 ms Current 120 Worst 120 Threshold 24 Raw Value 0001590168 Status Good 04 Attribute name Start/Stop Count Real value 1,937 Current 100 Worst 100 Threshold 0 Raw Value 0000000791 Status Good 05 Attribute name Reallocated Sectors Count Real value 0 Current 100 Worst 100 Threshold 5 Raw Value 0000000000 Status Good 07 Attribute name Seek Error Rate Real value 0 Current 100 Worst 100 Threshold 67 Raw Value 0000000000 Status Good 08 Attribute name Seek Time Performance Real value 0 Current 100 Worst 100 Threshold 20 Raw Value 0000000000 Status Good 09 Attribute name Power-On Hours (POH) Real value 467d 14h Current 99 Worst 99 Threshold 0 Raw Value 0000002BD6 Status Good 0A Attribute name Spin Retry Count Real value 0 Current 100 Worst 100 Threshold 60 Raw Value 0000000000 Status Good 0C Attribute name Device Power Cycle Count Real value 1,923 Current 100 Worst 100 Threshold 0 Raw Value 0000000783 Status Good C0 Attribute name Power-off Retract Count Real value 2,337 Current 99 Worst 99 Threshold 0 Raw Value 0000000921 Status Good C1 Attribute name Load/Unload Cycle Count Real value 2,337 Current 99 Worst 99 Threshold 0 Raw Value 0000000921 Status Good C2 Attribute name Temperature Real value 51 °C Current 117 Worst 117 Threshold 0 Raw Value 00000B0033 Status Good C4 Attribute name Reallocation Event Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good C5 Attribute name Current Pending Sector Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good C6 Attribute name Uncorrectable Sector Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good C7 Attribute name UltraDMA CRC Error Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good Partition 0 Partition ID Disk #0, Partition #0 File System NTFS Volume Serial Number 647EDC00 Size 24.2 GB Used Space 10.8 GB (44%) Free Space 13.4 GB (56%) Partition 1 Partition ID Disk #0, Partition #1 Disk Letter C: File System NTFS Volume Serial Number 0C810B1B Size 220 GB Used Space 43 GB (19%) Free Space 176 GB (81%) Optical Drives MATSHITA DVD+-RW SW830 Media Type DVD Writer Name MATSHITA DVD+-RW SW830 Availability Running/Full Power Capabilities Random Access, Supports Writing, Supports Removable Media Read capabilities CD-R, CD-RW, CD-ROM, DVD-RAM, DVD-ROM, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-R DL, DVD+R DL Write capabilities CD-R, CD-RW, DVD-RAM, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-R DL, DVD+R DL Config Manager Error Code Device is working properly Config Manager User Config FALSE Drive F: Media Loaded FALSE SCSI Bus 1 SCSI Logical Unit 0 SCSI Port 0 SCSI Target Id 0 Status OK Audio Sound Card Realtek High Definition Audio Playback Devices Headphones (Phonak ComPilot II Stereo) (default) Speakers / Headphones (Realtek High Definition Audio) Headset (Phonak ComPilot II Hands-Free AG Audio) Recording Device Headset (Phonak ComPilot II Hands-Free AG Audio) Peripherals HID Keyboard Device Device Kind Keyboard Device Name HID Keyboard Device Vendor Lite-On Technology Corp Location USB Input Device Driver Date 6-21-2006 Version 10.0.19041.1 File C:\WINDOWS\system32\DRIVERS\kbdhid.sys File C:\WINDOWS\system32\DRIVERS\kbdclass.sys HID-compliant mouse Device Kind Mouse Device Name HID-compliant mouse Vendor Logitech Location USB Input Device Driver Date 6-21-2006 Version 10.0.19041.1 File C:\WINDOWS\system32\DRIVERS\mouhid.sys File C:\WINDOWS\system32\DRIVERS\mouclass.sys Printers Fax Printer Port SHRFAX: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 200 * 200 dpi Monochrome Status Unknown Driver Driver Name Microsoft Shared Fax Driver (v4.00) Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\FXSDRV.DLL Microsoft Print to PDF Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft Print To PDF (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ec1e73781eaf7fda\Amd64\mxdwdrv.dll Microsoft XPS Document Writer Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft XPS Document Writer v4 (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ec1e73781eaf7fda\Amd64\mxdwdrv.dll Officejet Pro 8600 [540F9C] (Default Printer) Printer Port WSD-ad87b96d-eb00-4e0a-9507-dc7fb5d5d083 Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status The printer is offline Driver Driver Name HP Officejet Pro 8600 Class Driver (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ec1e73781eaf7fda\Amd64\mxdwdrv.dll OneNote for Windows 10 Printer Port Microsoft.Office.OneNote_16001.13530.20492.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-435610278-2940156754-2573902651-1073 Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 300 * 300 dpi Color Status Unknown Driver Driver Name Microsoft Software Printer Driver (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ec1e73781eaf7fda\Amd64\mxdwdrv.dll Network You are connected to the internet Connected through Realtek PCIe GBE Family Controller IP Address 192.168.0.16 Subnet mask 255.255.255.0 Gateway server 192.168.0.1 Preferred DNS server 192.168.0.1 Alternate DNS server 205.171.2.65 DHCP Enabled DHCP server 192.168.0.1 External IP Address 97.116.2.150 Adapter Type Ethernet NetBIOS over TCP/IP Enabled via DHCP NETBIOS Node Type Hybrid node Link Speed 0 Bps Computer Name NetBIOS Name DELL-INSPIRON DNS Name Dell-Inspiron Membership Part of workgroup Workgroup HVEZDA Remote Desktop Disabled Console State Active Domain DELL-INSPIRON WinInet Info LAN Connection Local system uses a local area network to connect to the Internet Local system has RAS to connect to the Internet Wi-Fi Info Using native Wi-Fi API version 2 Available access points count 4 Wi-Fi (Arias) SSID Arias Frequency 2462000 kHz Channel Number 11 Name Arias Signal Strength/Quality 88 Security Enabled State The interface is not connected to any network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (TP-LINK_Extender_2.4GHz) SSID TP-LINK_Extender_2.4GHz Frequency 2412000 kHz Channel Number 1 Name TP-LINK_Extender_2.4GHz Signal Strength/Quality 90 Security Enabled State The interface is not connected to any network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (cat lover) SSID cat lover Frequency 2412000 kHz Channel Number 1 Name cat lover Signal Strength/Quality 100 Security Enabled State The interface is not connected to any network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (mdh-UAPacl) SSID mdh-UAPacl Frequency 2462000 kHz Channel Number 11 Name mdh-UAPacl Signal Strength/Quality 100 Security Enabled State The interface is not connected to any network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK WinHTTPInfo WinHTTPSessionProxyType No proxy Session Proxy Session Proxy Bypass Connect Retries 5 Connect Timeout (ms) 60,000 HTTP Version HTTP 1.1 Max Connects Per 1.0 Servers INFINITE Max Connects Per Servers INFINITE Max HTTP automatic redirects 10 Max HTTP status continue 10 Send Timeout (ms) 30,000 IEProxy Auto Detect Yes IEProxy Auto Config IEProxy IEProxy Bypass Default Proxy Config Access Type No proxy Default Config Proxy Default Config Proxy Bypass Sharing and Discovery Network Discovery Disabled File and Printer Sharing Disabled File and printer sharing service Enabled Simple File Sharing Enabled Administrative Shares Enabled Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Adapters List Enabled Bluetooth Device (Personal Area Network) Connection Name Bluetooth Network Connection DHCP enabled Yes MAC Address 90-48-9A-8A-B0-8C Dell Wireless 1705 802.11b/g/n (2.4GHZ) Connection Name Wi-Fi DHCP enabled Yes MAC Address 90-48-9A-8A-B0-8B Realtek PCIe GBE Family Controller Connection Name Ethernet NetBIOS over TCPIP Yes DHCP enabled Yes MAC Address F8-BC-12-88-D9-4D IP Address 192.168.0.16 Subnet mask 255.255.255.0 Gateway server 192.168.0.1 DHCP 192.168.0.1 DNS Server 192.168.0.1 205.171.2.65 Network Shares No network shares Current TCP Connections ABService.exe (3768) Local 0.0.0.0:2008 LISTEN Local 0.0.0.0:6045 LISTEN C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (12112) Local 192.168.0.16:57888 ESTABLISHED Remote 208.111.186.128:80 (Querying... ) (HTTP) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (12484) Local 192.168.0.16:57848 ESTABLISHED Remote 142.250.191.138:443 (Querying... ) (HTTPS) Local 192.168.0.16:57850 ESTABLISHED Remote 142.250.191.234:443 (Querying... ) (HTTPS) Local 192.168.0.16:57857 ESTABLISHED Remote 142.250.191.129:443 (Querying... ) (HTTPS) Local 192.168.0.16:57858 ESTABLISHED Remote 172.217.1.99:443 (Querying... ) (HTTPS) Local 192.168.0.16:57842 ESTABLISHED Remote 142.251.32.4:443 (Querying... ) (HTTPS) Local 192.168.0.16:57861 ESTABLISHED Remote 66.163.35.36:443 (Querying... ) (HTTPS) Local 192.168.0.16:57862 ESTABLISHED Remote 142.251.32.4:443 (Querying... ) (HTTPS) Local 192.168.0.16:57863 ESTABLISHED Remote 172.217.2.46:443 (Querying... ) (HTTPS) Local 192.168.0.16:57864 ESTABLISHED Remote 44.237.64.147:443 (Querying... ) (HTTPS) Local 192.168.0.16:57865 ESTABLISHED Remote 35.161.223.163:80 (Querying... ) (HTTP) Local 192.168.0.16:57867 ESTABLISHED Remote 142.250.190.6:443 (Querying... ) (HTTPS) Local 192.168.0.16:57868 ESTABLISHED Remote 142.250.191.142:443 (Querying... ) (HTTPS) Local 192.168.0.16:57869 ESTABLISHED Remote 35.161.223.163:443 (Querying... ) (HTTPS) Local 192.168.0.16:57875 ESTABLISHED Remote 13.227.37.69:443 (Querying... ) (HTTPS) Local 192.168.0.16:57876 ESTABLISHED Remote 172.64.155.215:443 (Querying... ) (HTTPS) Local 192.168.0.16:57877 ESTABLISHED Remote 104.16.115.50:443 (Querying... ) (HTTPS) Local 192.168.0.16:57879 ESTABLISHED Remote 146.75.77.44:443 (Querying... ) (HTTPS) Local 192.168.0.16:57881 ESTABLISHED Remote 146.75.76.84:443 (Querying... ) (HTTPS) Local 192.168.0.16:57882 ESTABLISHED Remote 54.158.98.54:443 (Querying... ) (HTTPS) Local 192.168.0.16:57883 ESTABLISHED Remote 52.71.11.96:443 (Querying... ) (HTTPS) Local 192.168.0.16:57884 ESTABLISHED Remote 52.33.194.179:443 (Querying... ) (HTTPS) Local 192.168.0.16:57885 ESTABLISHED Remote 54.239.21.125:443 (Querying... ) (HTTPS) Local 192.168.0.16:57886 ESTABLISHED Remote 54.239.21.125:443 (Querying... ) (HTTPS) Local 192.168.0.16:57887 ESTABLISHED Remote 54.239.21.125:443 (Querying... ) (HTTPS) Local 192.168.0.16:57843 ESTABLISHED Remote 142.250.191.163:443 (Querying... ) (HTTPS) Local 192.168.0.16:57893 ESTABLISHED Remote 104.16.189.71:443 (Querying... ) (HTTPS) Local 192.168.0.16:57895 ESTABLISHED Remote 52.46.157.7:443 (Querying... ) (HTTPS) Local 192.168.0.16:57896 ESTABLISHED Remote 72.21.202.186:443 (Querying... ) (HTTPS) Local 192.168.0.16:57897 ESTABLISHED Remote 54.239.23.88:443 (Querying... ) (HTTPS) Local 192.168.0.16:57898 ESTABLISHED Remote 54.239.23.88:443 (Querying... ) (HTTPS) Local 192.168.0.16:57899 ESTABLISHED Remote 52.71.11.96:443 (Querying... ) (HTTPS) Local 192.168.0.16:57900 ESTABLISHED Remote 142.251.32.10:443 (Querying... ) (HTTPS) Local 192.168.0.16:57901 ESTABLISHED Remote 54.192.57.117:443 (Querying... ) (HTTPS) Local 192.168.0.16:57906 ESTABLISHED Remote 52.46.132.114:443 (Querying... ) (HTTPS) Local 192.168.0.16:57907 ESTABLISHED Remote 146.75.77.16:443 (Querying... ) (HTTPS) Local 192.168.0.16:57908 ESTABLISHED Remote 54.158.45.160:443 (Querying... ) (HTTPS) Local 192.168.0.16:57909 ESTABLISHED Remote 54.158.45.160:443 (Querying... ) (HTTPS) Local 192.168.0.16:57913 ESTABLISHED Remote 54.239.23.88:443 (Querying... ) (HTTPS) Local 192.168.0.16:57914 ESTABLISHED Remote 54.239.23.88:443 (Querying... ) (HTTPS) Local 192.168.0.16:57915 ESTABLISHED Remote 54.239.23.88:443 (Querying... ) (HTTPS) Local 192.168.0.16:57916 ESTABLISHED Remote 54.239.23.88:443 (Querying... ) (HTTPS) Local 192.168.0.16:57917 ESTABLISHED Remote 142.250.112.188:5228 (Querying... ) Local 192.168.0.16:57845 ESTABLISHED Remote 34.199.8.144:80 (Querying... ) (HTTP) Local 192.168.0.16:57846 ESTABLISHED Remote 142.250.190.138:443 (Querying... ) (HTTPS) Local 192.168.0.16:57923 ESTABLISHED Remote 142.250.190.10:443 (Querying... ) (HTTPS) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (10436) Local 127.0.0.1:50067 ESTABLISHED Remote 127.0.0.1:5939 (Querying... ) Local 127.0.0.1:50076 ESTABLISHED Remote 127.0.0.1:50077 (Querying... ) Local 127.0.0.1:50077 ESTABLISHED Remote 127.0.0.1:50076 (Querying... ) Local 192.168.0.16:50075 CLOSE-WAIT Remote 104.16.63.16:443 (Querying... ) (HTTPS) Local 192.168.0.16:57859 ESTABLISHED Remote 20.49.104.23:443 (Querying... ) (HTTPS) C:\Program Files\Google\Drive\googledrivesync.exe (4016) Local 192.168.0.16:50320 CLOSE-WAIT Remote 142.250.191.109:443 (Querying... ) (HTTPS) lsass.exe (840) Local 0.0.0.0:49664 LISTEN SearchApp.exe (6676) Local 192.168.0.16:49740 CLOSE-WAIT Remote 72.21.91.29:80 (Querying... ) (HTTP) services.exe (760) Local 0.0.0.0:49670 LISTEN spoolsv.exe (3424) Local 0.0.0.0:49668 LISTEN svchost.exe (1252) Local 0.0.0.0:49666 LISTEN svchost.exe (1728) Local 0.0.0.0:49667 LISTEN svchost.exe (3988) Local 192.168.0.16:49693 ESTABLISHED Remote 13.64.180.106:443 (Querying... ) (HTTPS) Local 192.168.0.16:49724 ESTABLISHED Remote 40.83.247.108:443 (Querying... ) (HTTPS) svchost.exe (552) Local 0.0.0.0:135 (DCE) LISTEN svchost.exe (6176) Local 0.0.0.0:5040 LISTEN svchost.exe (8920) Local 0.0.0.0:7680 LISTEN System Process Local 192.168.0.16:57922 TIME-WAIT Remote 142.250.190.10:443 (Querying... ) (HTTPS) Local 192.168.0.16:57921 TIME-WAIT Remote 142.250.190.10:443 (Querying... ) (HTTPS) Local 192.168.0.16:57851 TIME-WAIT Remote 213.227.173.146:5938 (Querying... ) System Process Local 0.0.0.0:445 (Windows shares) LISTEN Local 192.168.0.16:139 (NetBIOS session service) LISTEN TeamViewer.exe (6300) Local 127.0.0.1:49704 ESTABLISHED Remote 127.0.0.1:49703 (Querying... ) Local 127.0.0.1:49700 ESTABLISHED Remote 127.0.0.1:5939 (Querying... ) Local 192.168.0.16:49702 CLOSE-WAIT Remote 104.16.62.16:443 (Querying... ) (HTTPS) Local 127.0.0.1:49703 ESTABLISHED Remote 127.0.0.1:49704 (Querying... ) TeamViewer_Service.exe (3972) Local 127.0.0.1:5939 LISTEN Local 127.0.0.1:5939 ESTABLISHED Remote 127.0.0.1:49700 (Querying... ) Local 127.0.0.1:5939 ESTABLISHED Remote 127.0.0.1:50067 (Querying... ) Local 192.168.0.16:57854 ESTABLISHED Remote 169.57.91.234:5938 (Querying... ) Local 127.0.0.1:37114 LISTEN Local 127.0.0.1:37014 LISTEN wininit.exe (696) Local 0.0.0.0:49665 LISTEN Generated with Speccy v1.32.740