Summary Operating System Windows 10 Home 64-bit CPU AMD Ryzen 5 RAM 16,0GB Motherboard ASUSTeK COMPUTER INC. TUF B450-PLUS GAMING (AM4) 50 °C Graphics ASUS VG278HE (1920x1080@100Hz) 2047MB NVIDIA GeForce GTX TITAN Black (NVIDIA) 61 °C Storage 931GB Crucial CT1000P1SSD8 (Unknown (SSD)) 1863GB Western Digital WDC WD20EARS-00MVWB0 (SATA ) 31 °C 1863GB Western Digital WDC WD20EARS-00MVWB0 (SATA ) 30 °C 167GB Corsair CSSD-F160GBP2 (SATA (SSD)) 26 °C Optical Drives No optical disk drives detected Audio Realtek High Definition Audio Operating System Windows 10 Home 64-bit Computer type: Virtual Installation Date: 2020-07-19 11:17:07 Serial Number: RMQ66-GPCR6-MHC3Q-M7J9G-XQBK7 Windows Security Center User Account Control (UAC) Enabled Notify level 3 - Always Notify Windows Update AutoUpdate Not configured Windows Defender Windows Defender Enabled Firewall Firewall Enabled Display Name Bitdefender Firewall Antivirus Windows Defender Antivirus Disabled Virus Signature Database Up to date Bitdefender Antivirus Antivirus Enabled Virus Signature Database Up to date .NET Frameworks installed v4.8 Full v4.8 Client v3.5 SP1 v3.0 SP2 v2.0 SP2 Internet Explorer Version 11.450.19041.0 PowerShell Version 5.1.19041.1 Environment Variables USERPROFILE C:\Users\Jonah Exp SystemRoot C:\WINDOWS User Variables OneDrive C:\Users\Jonah Exp\OneDrive OneDriveConsumer C:\Users\Jonah Exp\OneDrive Path C:\Users\Jonah Exp\AppData\Local\Microsoft\WindowsApps TEMP C:\Users\Jonah Exp\AppData\Local\Temp TMP C:\Users\Jonah Exp\AppData\Local\Temp Machine Variables ComSpec C:\WINDOWS\system32\cmd.exe DriverData C:\Windows\System32\Drivers\DriverData NUMBER_OF_PROCESSORS 12 OS Windows_NT Path c:\windows\system32 c:\windows c:\windows\system32\wbem c:\windows\system32\windowspowershell\v1.0\ c:\program files\nvidia corporation\nvidia nvdlisr c:\windows\system32 c:\windows c:\windows\system32\wbem c:\windows\system32\windowspowershell\v1.0\ c:\windows\system32\openssh\ c:\program files\crucial\crucial storage executive C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC PROCESSOR_ARCHITECTURE AMD64 PROCESSOR_IDENTIFIER AMD64 Family 23 Model 113 Stepping 0, AuthenticAMD PROCESSOR_LEVEL 23 PROCESSOR_REVISION 7100 PSModulePath %ProgramFiles%\WindowsPowerShell\Modules C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules TEMP C:\WINDOWS\TEMP TMP C:\WINDOWS\TEMP USERNAME SYSTEM windir C:\WINDOWS Power Profile Active power scheme AMD Ryzen High Performance Hibernation Disabled Turn Off Monitor after: (On AC Power) Never Turn Off Hard Disk after: (On AC Power) Never Suspend after: (On AC Power) Never Screen saver Disabled Uptime Current Session Current Time 2020-08-27 03:55:09 Current Uptime 8 267 sec (0 d, 02 h, 17 m, 47 s) Last Boot Time 2020-08-27 01:37:22 Services Running Application Host Helper Service Running Application Identity Running Application Information Running AppX Deployment Service (AppXSVC) Running ARMOURY CRATE Service Running ASUS Com Service Running AsusFanControlService Running AVCTP service Running Background Intelligent Transfer Service Running Background Tasks Infrastructure Service Running Base Filtering Engine Running Bitdefender Auxiliary Service Running Bitdefender Desktop Update Service Running Bitdefender Device Management Service Running Bitdefender Protected Service Running Bitdefender RedLine Service Running Bitdefender Virus Shield Running Bitdefender Vpn Service Running Capability Access Manager Service Running cbdhsvc_bec98 Running CDPUserSvc_bec98 Running Certificate Propagation Running CNG Key Isolation Running COM+ Event System Running Connected Devices Platform Service Running Connected User Experiences and Telemetry Running CoreMessaging Running Credential Manager Running Cryptographic Services Running Data Usage Running DCOM Server Process Launcher Running Delivery Optimization Running Device Association Service Running Device Install Service Running DHCP Client Running Diagnostic Policy Service Running Diagnostic Service Host Running Diagnostic System Host Running Display Policy Service Running Distributed Link Tracking Client Running DNS Client Running Extensible Authentication Protocol Running File History Service Running Function Discovery Provider Host Running Function Discovery Resource Publication Running Gaming Services Running Gaming Services Running Geolocation Service Running Group Policy Client Running Host Network Service Running Human Interface Device Service Running HV Host Service Running IKE and AuthIP IPsec Keying Modules Running Internet Connection Sharing (ICS) Running IPsec Policy Agent Running LightingService Running Local Session Manager Running Microsoft Defender Antivirus Service Running Microsoft Passport Running Microsoft Passport Container Running Microsoft Store Install Service Running Network Connected Devices Auto-Setup Running Network Connection Broker Running Network Connections Running Network List Service Running Network Location Awareness Running Network Setup Service Running Network Store Interface Service Running Network Virtualization Service Running NVIDIA Display Container LS Running OneSyncSvc_bec98 Running OpenSSH Authentication Agent Running Peer Networking Identity Manager Running PimIndexMaintenanceSvc_bec98 Running Plug and Play Running Power Running Print Spooler Running ProductAgentService Running Program Compatibility Assistant Service Running Radio Management Service Running Realtek Audio Universal Service Running Recommended Troubleshooting Service Running Remote Access Connection Manager Running Remote Procedure Call (RPC) Running RIP Listener Running ROG Live Service Running RPC Endpoint Mapper Running Secondary Log-on Running Secure Socket Tunneling Protocol Service Running Security Accounts Manager Running Security Center Running Server Running Shell Hardware Detection Running Simple TCP/IP Services Running Smart Card Running SNMP Service Running SSDP Discovery Running State Repository Service Running Storage Service Running System Event Notification Service Running System Events Broker Running System Guard Runtime Monitor Broker Running Task Scheduler Running TCP/IP NetBIOS Helper Running Themes Running Time Broker Running Touch Keyboard and Handwriting Panel Service Running UnistoreSvc_bec98 Running Update Orchestrator Service Running UPnP Device Host Running User Manager Running User Profile Service Running UserDataSvc_bec98 Running Web Account Manager Running Windows Audio Running Windows Audio Endpoint Builder Running Windows Backup Running Windows Connection Manager Running Windows Defender Firewall Running Windows Event Log Running Windows Font Cache Service Running Windows Management Instrumentation Running Windows Push Notifications System Service Running Windows Search Running Windows Security Service Running Windows Time Running WinHTTP Web Proxy Auto-Discovery Service Running Wired AutoConfig Running Workstation Running WpnUserService_bec98 Running WWAN AutoConfig Stopped AarSvc_bec98 Stopped ActiveX Installer (AxInstSV) Stopped AfVpnService Stopped AllJoyn Router Service Stopped App Readiness Stopped Application Layer Gateway Service Stopped ASP.NET State Service Stopped ASUS Update Service (asus) Stopped ASUS Update Service (asusm) Stopped AsusROGLSLService Download ROGLSLoader Stopped Auto Time Zone Updater Stopped BcastDVRUserService_bec98 Stopped BitLocker Drive Encryption Service Stopped Block Level Backup Engine Service Stopped Bluetooth Audio Gateway Service Stopped Bluetooth Support Service Stopped BluetoothUserService_bec98 Stopped CaptureService_bec98 Stopped Cellular Time Stopped Client License Service (ClipSVC) Stopped COM+ System Application Stopped Computer Browser Stopped ConsentUxUserSvc_bec98 Stopped CredentialEnrollmentManagerUserSvc_bec98 Stopped Data Sharing Service Stopped Device Management Enrollment Service Stopped Device Management Wireless Application Protocol (WAP) Push message Routing Service Stopped Device Setup Manager Stopped DeviceAssociationBrokerSvc_bec98 Stopped DevicePickerUserSvc_bec98 Stopped DevicesFlowUserSvc_bec98 Stopped DevQuery Background Discovery Broker Stopped Diagnostic Execution Service Stopped Display Enhancement Service Stopped Distributed Transaction Coordinator Stopped Downloaded Maps Manager Stopped DTS APO3 Service Stopped Embedded Mode Stopped Encrypting File System (EFS) Stopped Enterprise App Management Service Stopped Fax Stopped Google Chrome Elevation Service (GoogleChromeElevationService) Stopped Google Update Service (gupdate) Stopped Google Update Service (gupdatem) Stopped GraphicsPerfSvc Stopped Hyper-V Data Exchange Service Stopped Hyper-V Guest Service Interface Stopped Hyper-V Guest Shutdown Service Stopped Hyper-V Heartbeat Service Stopped Hyper-V Host Compute Service Stopped Hyper-V PowerShell Direct Service Stopped Hyper-V Remote Desktop Virtualization Service Stopped Hyper-V Time Synchronization Service Stopped Hyper-V Volume Shadow Copy Requestor Stopped IP Helper Stopped IP Translation Configuration Service Stopped KtmRm for Distributed Transaction Coordinator Stopped Language Experience Service Stopped Link-Layer Topology Discovery Mapper Stopped Local Profile Assistant Service Stopped MessagingService_bec98 Stopped Micron SSD Cache Monitor Stopped Microsoft Diagnostics Hub Standard Collector Service Stopped Microsoft Account Sign-in Assistant Stopped Microsoft Defender Antivirus Network Inspection Service Stopped Microsoft Edge Elevation Service (MicrosoftEdgeElevationService) Stopped Microsoft Edge Update Service (edgeupdate) Stopped Microsoft Edge Update Service (edgeupdatem) Stopped Microsoft iSCSI Initiator Service Stopped Microsoft Software Shadow Copy Provider Stopped Microsoft Storage Spaces SMP Stopped Microsoft Windows SMS Router Service. Stopped Natural Authentication Stopped Net.Pipe Listener Adapter Stopped Net.Tcp Listener Adapter Stopped Net.Tcp Port Sharing Service Stopped Netlogon Stopped Network Connectivity Assistant Stopped OpenSSH SSH Server Stopped Optimise drives Stopped Parental Controls Stopped Payments and NFC/SE Manager Stopped Peer Name Resolution Protocol Stopped Peer Networking Grouping Stopped Performance Counter DLL Host Stopped Performance Logs & Alerts Stopped Phone Service Stopped PNRP Machine Name Publication Service Stopped Portable Device Enumerator Service Stopped Printer Extensions and Notifications Stopped PrintWorkflowUserSvc_bec98 Stopped Problem Reports Control Panel Support Stopped Quality Windows Audio Video Experience Stopped Remote Access Auto Connection Manager Stopped Remote Desktop Configuration Stopped Remote Desktop Services Stopped Remote Desktop Services UserMode Port Redirector Stopped Remote Procedure Call (RPC) Locator Stopped Remote Registry Stopped Retail Demo Service Stopped Routing and Remote Access Stopped Sensor Data Service Stopped Sensor Monitoring Service Stopped Sensor Service Stopped Shared PC Account Manager Stopped Smart Card Device Enumeration Service Stopped Smart Card Removal Policy Stopped SNMP Trap Stopped Software Protection Stopped Spatial Data Service Stopped Special Administration Console Helper Stopped Spot Verifier Stopped Steam Client Service Stopped Still Image Acquisition Events Stopped Storage Tiers Management Stopped SysMain Stopped Telephony Stopped UdkUserSvc_bec98 Stopped Virtual Disk Stopped Volume Shadow Copy Stopped Volumetric Audio Compositor Service Stopped W3C Logging Service Stopped WalletService Stopped WarpJITSvc Stopped WebClient Stopped Wi-Fi Direct Services Connection Manager Service Stopped Windows Biometric Service Stopped Windows Camera Frame Server Stopped Windows Connect Now - Config Registrar Stopped Windows Encryption Provider Host Service Stopped Windows Error Reporting Service Stopped Windows Event Collector Stopped Windows Image Acquisition (WIA) Stopped Windows Insider Service Stopped Windows Installer Stopped Windows License Manager Service Stopped Windows Management Service Stopped Windows Media Player Network Sharing Service Stopped Windows Mixed Reality OpenXR Service Stopped Windows Mobile Hotspot Service Stopped Windows Modules Installer Stopped Windows Perception Service Stopped Windows Perception Simulation Service Stopped Windows Presentation Foundation Font Cache 3.0.0.0 Stopped Windows Process Activation Service Stopped Windows PushToInstall Service Stopped Windows Remote Management (WS-Management) Start pending Windows Update Stopped Windows Update Medic Service Stopped WLAN AutoConfig Stopped WMI Performance Adapter Stopped Work Folders Stopped Xbox Accessory Management Service Stopped Xbox Live Auth Manager Stopped Xbox Live Game Save Stopped Xbox Live Networking Service TimeZone TimeZone GMT +1:00 Hours Language English (United States) Location Sweden Format English (Sweden) Currency kr Date Format yyyy-MM-dd Time Format HH:mm:ss Scheduler 2020-08-27 04:00; ASUS Live Update Task Schedule 2020-08-27 04:44; GoogleUpdateTaskMachineUA 2020-08-27 04:45; MicrosoftEdgeUpdateTaskMachineUA 2020-08-27 06:44; GoogleUpdateTaskMachineCore 2020-08-27 21:45; MicrosoftEdgeUpdateTaskMachineCore AdwCleaner_onReboot Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 Bitdefender AgentTask_AD394AE64E874073B10A89FEEC305A3C GU5SkipUAC RunSpeccy Hotfixes Installed 2020-08-26 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.321.2262.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2020-08-26 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.321.2253.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2020-08-26 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.321.2244.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2020-08-26 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.321.2236.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2020-08-26 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.321.2229.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2020-08-26 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.321.2211.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 2020-08-26 Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 (Version 1.321.2205.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. Not Installed System Folders Application Data C:\ProgramData Cookies C:\Users\Jonah Exp\AppData\Local\Microsoft\Windows\INetCookies Desktop C:\Users\Jonah Exp\Desktop Documents C:\Users\Public\Documents Fonts C:\WINDOWS\Fonts Global Favorites C:\Users\Jonah Exp\Favorites Internet History C:\Users\Jonah Exp\AppData\Local\Microsoft\Windows\History Local Application Data C:\Users\Jonah Exp\AppData\Local Music C:\Users\Public\Music Path for burning CD C:\Users\Jonah Exp\AppData\Local\Microsoft\Windows\Burn\Burn Physical Desktop C:\Users\Jonah Exp\Desktop Pictures C:\Users\Public\Pictures Program Files C:\Program Files Public Desktop C:\Users\Public\Desktop Start Menu C:\ProgramData\Microsoft\Windows\Start Menu Start Menu Programs C:\ProgramData\Microsoft\Windows\Start Menu\Programs Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Templates C:\ProgramData\Microsoft\Windows\Templates Temporary Internet Files C:\Users\Jonah Exp\AppData\Local\Microsoft\Windows\INetCache User Favorites C:\Users\Jonah Exp\Favorites Videos C:\Users\Public\Videos Windows Directory C:\WINDOWS Windows/System C:\WINDOWS\system32 Process List AISuite3.exe Process ID 10300 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe Memory Usage 49 MB Peak Memory Usage 111 MB ApplicationFrameHost.exe Process ID 12736 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\ApplicationFrameHost.exe Memory Usage 43 MB Peak Memory Usage 56 MB ArmouryCrate.Service.exe Process ID 5276 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.Service.exe Memory Usage 117 MB Peak Memory Usage 1.02 GB ArmouryCrate.UserSessionHelper.exe Process ID 9828 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.UserSessionHelper.exe Memory Usage 122 MB Peak Memory Usage 1.01 GB ArmouryIgoService.exe Process ID 10336 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\ArmouryIgoService.exe Memory Usage 37 MB Peak Memory Usage 46 MB ArmourySocketServer.exe Process ID 10452 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe Memory Usage 32 MB Peak Memory Usage 43 MB ArmourySwAgent.exe Process ID 14788 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\ASUS\ArmouryDevice\dll\SwAgent\ArmourySwAgent.exe Memory Usage 116 MB Peak Memory Usage 136 MB asus_framework.exe Process ID 11348 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe Memory Usage 55 MB Peak Memory Usage 92 MB asus_framework.exe Process ID 10268 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe Memory Usage 54 MB Peak Memory Usage 73 MB AsusFanControlService.exe Process ID 5236 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\ASUS\AsusFanControlService\2.00.78\AsusFanControlService.exe Memory Usage 55 MB Peak Memory Usage 55 MB atkexComSvc.exe Process ID 5220 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\ASUS\AXSP\4.00.42\atkexComSvc.exe Memory Usage 28 MB Peak Memory Usage 28 MB audiodg.exe Process ID 4624 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\audiodg.exe Memory Usage 69 MB Peak Memory Usage 73 MB AuraListen.exe Process ID 14272 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files\WindowsApps\B9ECED6F.ROGAuraCore_2.1.30.0_x86__qmba6cd70vzyy\AuraListen.exe Memory Usage 43 MB Peak Memory Usage 43 MB bdagent.exe Process ID 13656 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe Memory Usage 112 MB Peak Memory Usage 113 MB bdntwrk.exe Process ID 9320 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe Memory Usage 37 MB Peak Memory Usage 38 MB bdredline.exe Process ID 12320 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe Memory Usage 11 MB Peak Memory Usage 12 MB bdservicehost.exe Process ID 1556 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe Memory Usage 492 MB Peak Memory Usage 1.49 GB bdservicehost.exe Process ID 2580 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe Memory Usage 95 MB Peak Memory Usage 95 MB bdservicehost.exe Process ID 5152 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe Memory Usage 19 MB Peak Memory Usage 20 MB BdVpnApp.exe Process ID 3748 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files\Bitdefender\Bitdefender VPN\BdVpnApp.exe Memory Usage 16 MB Peak Memory Usage 16 MB BdVpnService.exe Process ID 2628 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender\Bitdefender VPN\BdVpnService.exe Memory Usage 138 MB Peak Memory Usage 139 MB bdwtxag.exe Process ID 13864 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files\Bitdefender\Bitdefender Security\bdwtxag.exe Memory Usage 64 MB Peak Memory Usage 65 MB chrome.exe Process ID 11160 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 35 MB Peak Memory Usage 35 MB chrome.exe Process ID 18256 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 189 MB Peak Memory Usage 302 MB chrome.exe Process ID 12416 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 41 MB Peak Memory Usage 44 MB chrome.exe Process ID 15384 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 117 MB Peak Memory Usage 206 MB chrome.exe Process ID 7644 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 55 MB Peak Memory Usage 57 MB chrome.exe Process ID 18428 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 164 MB Peak Memory Usage 215 MB chrome.exe Process ID 18280 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 7.61 MB Peak Memory Usage 7.65 MB chrome.exe Process ID 17292 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 120 MB Peak Memory Usage 173 MB chrome.exe Process ID 11208 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 61 MB Peak Memory Usage 68 MB chrome.exe Process ID 18204 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 336 MB Peak Memory Usage 349 MB chrome.exe Process ID 2492 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 290 MB Peak Memory Usage 293 MB chrome.exe Process ID 924 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 366 MB Peak Memory Usage 368 MB chrome.exe Process ID 1808 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 18 MB Peak Memory Usage 18 MB chrome.exe Process ID 15408 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 116 MB Peak Memory Usage 136 MB chrome.exe Process ID 19944 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 22 MB Peak Memory Usage 22 MB conhost.exe Process ID 21636 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\conhost.exe Memory Usage 5.59 MB Peak Memory Usage 6.10 MB conhost.exe Process ID 9332 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\conhost.exe Memory Usage 32 MB Peak Memory Usage 32 MB conhost.exe Process ID 9844 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\conhost.exe Memory Usage 10 MB Peak Memory Usage 10 MB csrss.exe Process ID 972 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 4.86 MB Peak Memory Usage 5.29 MB csrss.exe Process ID 388 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 5.11 MB Peak Memory Usage 12 MB ctfmon.exe Process ID 10592 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\ctfmon.exe Memory Usage 90 MB Peak Memory Usage 90 MB dasHost.exe Process ID 6524 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\dasHost.exe Memory Usage 26 MB Peak Memory Usage 26 MB DevMgmtService.exe Process ID 2604 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender\Bitdefender Device Management\DevMgmtService.exe Memory Usage 62 MB Peak Memory Usage 64 MB DipAwayMode.exe Process ID 8112 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe Memory Usage 42 MB Peak Memory Usage 60 MB DiscoverySrv.exe Process ID 10476 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender Agent\DiscoverySrv.exe Memory Usage 35 MB Peak Memory Usage 36 MB dllhost.exe Process ID 9824 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\dllhost.exe Memory Usage 13 MB Peak Memory Usage 14 MB dllhost.exe Process ID 10944 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\dllhost.exe Memory Usage 18 MB Peak Memory Usage 639 MB dllhost.exe Process ID 12976 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\dllhost.exe Memory Usage 20 MB Peak Memory Usage 25 MB dwm.exe Process ID 1568 User DWM-1 Domain Window Manager Path C:\Windows\System32\dwm.exe Memory Usage 190 MB Peak Memory Usage 203 MB explorer.exe Process ID 10416 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\explorer.exe Memory Usage 328 MB Peak Memory Usage 365 MB EzUpdt.exe Process ID 10308 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe Memory Usage 43 MB Peak Memory Usage 55 MB fontdrvhost.exe Process ID 1288 User UMFD-1 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 12 MB Peak Memory Usage 24 MB fontdrvhost.exe Process ID 1292 User UMFD-0 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 6.66 MB Peak Memory Usage 6.68 MB GamingServices.exe Process ID 8152 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\WindowsApps\Microsoft.GamingServices_2.44.19001.0_x64__8wekyb3d8bbwe\GamingServices.exe Memory Usage 52 MB Peak Memory Usage 60 MB GamingServicesNet.exe Process ID 8144 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Program Files\WindowsApps\Microsoft.GamingServices_2.44.19001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe Memory Usage 13 MB Peak Memory Usage 13 MB GoogleCrashHandler.exe Process ID 14132 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe Memory Usage 1.86 MB Peak Memory Usage 8.12 MB GoogleCrashHandler64.exe Process ID 14172 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe Memory Usage 1.27 MB Peak Memory Usage 7.89 MB LightingService.exe Process ID 5448 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\LightingService\LightingService.exe Memory Usage 63 MB Peak Memory Usage 63 MB LsaIso.exe Process ID 1028 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\LsaIso.exe Memory Usage 3.32 MB Peak Memory Usage 3.35 MB lsass.exe Process ID 1036 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\lsass.exe Memory Usage 49 MB Peak Memory Usage 50 MB MicronCacheMonitor.exe Process ID 8056 User SYSTEM Domain NT AUTHORITY Memory Usage 256 KB Peak Memory Usage 868 KB msedge.exe Process ID 4756 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 7.62 MB Peak Memory Usage 7.65 MB msedge.exe Process ID 5604 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 195 MB Peak Memory Usage 346 MB msedge.exe Process ID 20548 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 106 MB Peak Memory Usage 126 MB msedge.exe Process ID 20560 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 37 MB Peak Memory Usage 44 MB msedge.exe Process ID 20832 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 86 MB Peak Memory Usage 106 MB msedge.exe Process ID 20920 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 39 MB Peak Memory Usage 40 MB msedge.exe Process ID 21048 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 36 MB Peak Memory Usage 36 MB msedge.exe Process ID 21120 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 113 MB Peak Memory Usage 205 MB msedge.exe Process ID 21132 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 36 MB Peak Memory Usage 36 MB msedge.exe Process ID 21300 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 35 MB Peak Memory Usage 35 MB msedge.exe Process ID 21408 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 53 MB Peak Memory Usage 55 MB msedge.exe Process ID 22484 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 181 MB Peak Memory Usage 279 MB msedge.exe Process ID 22404 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 19 MB Peak Memory Usage 19 MB msedge.exe Process ID 21176 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 52 MB Peak Memory Usage 53 MB msedge.exe Process ID 20292 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 28 MB Peak Memory Usage 28 MB msedge.exe Process ID 19360 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 82 MB Peak Memory Usage 141 MB msedge.exe Process ID 8236 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 40 MB Peak Memory Usage 41 MB msedge.exe Process ID 18176 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 40 MB Peak Memory Usage 41 MB msedge.exe Process ID 22336 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 43 MB Peak Memory Usage 43 MB msedge.exe Process ID 18680 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 40 MB Peak Memory Usage 41 MB msedge.exe Process ID 20164 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe Memory Usage 23 MB Peak Memory Usage 23 MB MsMpEng.exe Process ID 5652 User SYSTEM Domain NT AUTHORITY Path C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2008.7-0\MsMpEng.exe Memory Usage 47 MB Peak Memory Usage 494 MB NVDisplay.Container.exe Process ID 8356 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ba8c9c14f3d320cb\Display.NvContainer\NVDisplay.Container.exe Memory Usage 114 MB Peak Memory Usage 155 MB NVDisplay.Container.exe Process ID 2380 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ba8c9c14f3d320cb\Display.NvContainer\NVDisplay.Container.exe Memory Usage 45 MB Peak Memory Usage 46 MB P508PowerAgent.exe Process ID 8012 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe Memory Usage 149 MB Peak Memory Usage 178 MB ProductAgentService.exe Process ID 5484 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender Agent\ProductAgentService.exe Memory Usage 44 MB Peak Memory Usage 45 MB Registry Process ID 156 User SYSTEM Domain NT AUTHORITY Memory Usage 87 MB Peak Memory Usage 128 MB ROGLiveService.exe Process ID 5292 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\ASUS\ROG Live Service\ROGLiveService.exe Memory Usage 59 MB Peak Memory Usage 59 MB RtkAudUService64.exe Process ID 13332 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\RtkAudUService64.exe Memory Usage 32 MB Peak Memory Usage 32 MB RtkAudUService64.exe Process ID 5376 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\RtkAudUService64.exe Memory Usage 30 MB Peak Memory Usage 30 MB RuntimeBroker.exe Process ID 12788 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 18 MB Peak Memory Usage 25 MB RuntimeBroker.exe Process ID 10400 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 19 MB Peak Memory Usage 26 MB RuntimeBroker.exe Process ID 14228 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 14 MB Peak Memory Usage 23 MB RuntimeBroker.exe Process ID 11832 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 34 MB Peak Memory Usage 37 MB RuntimeBroker.exe Process ID 9480 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 47 MB Peak Memory Usage 53 MB SearchApp.exe Process ID 12116 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe Memory Usage 186 MB Peak Memory Usage 204 MB SearchIndexer.exe Process ID 11132 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchIndexer.exe Memory Usage 72 MB Peak Memory Usage 78 MB seccenter.exe Process ID 15276 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files\Bitdefender\Bitdefender Security\seccenter.exe Memory Usage 169 MB Peak Memory Usage 169 MB SecHealthUI.exe Process ID 11092 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe Memory Usage 61 MB Peak Memory Usage 63 MB Secure System Process ID 88 User SYSTEM Domain NT AUTHORITY Memory Usage 104 KB Peak Memory Usage 116 KB SecurityHealthHost.exe Process ID 20276 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\SecurityHealthHost.exe Memory Usage 9.82 MB Peak Memory Usage 10 MB SecurityHealthService.exe Process ID 7532 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SecurityHealthService.exe Memory Usage 17 MB Peak Memory Usage 18 MB SecurityHealthSystray.exe Process ID 12700 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\SecurityHealthSystray.exe Memory Usage 10 MB Peak Memory Usage 11 MB services.exe Process ID 876 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\services.exe Memory Usage 14 MB Peak Memory Usage 15 MB SettingSyncHost.exe Process ID 12364 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\SettingSyncHost.exe Memory Usage 7.46 MB Peak Memory Usage 71 MB SgrmBroker.exe Process ID 15576 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SgrmBroker.exe Memory Usage 9.40 MB Peak Memory Usage 12 MB sihost.exe Process ID 9952 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\sihost.exe Memory Usage 28 MB Peak Memory Usage 29 MB smartscreen.exe Process ID 22232 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\smartscreen.exe Memory Usage 24 MB Peak Memory Usage 24 MB smss.exe Process ID 728 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\smss.exe Memory Usage 1.23 MB Peak Memory Usage 1.26 MB snmp.exe Process ID 5360 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\snmp.exe Memory Usage 19 MB Peak Memory Usage 19 MB Speccy64.exe Process ID 19756 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files\Speccy\Speccy64.exe Memory Usage 34 MB Peak Memory Usage 34 MB spoolsv.exe Process ID 4832 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\spoolsv.exe Memory Usage 38 MB Peak Memory Usage 38 MB ssh-agent.exe Process ID 5368 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\OpenSSH\ssh-agent.exe Memory Usage 13 MB Peak Memory Usage 13 MB StartMenuExperienceHost.exe Process ID 11700 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe Memory Usage 99 MB Peak Memory Usage 105 MB svchost.exe Process ID 10460 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 20 MB Peak Memory Usage 20 MB svchost.exe Process ID 1968 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 16 MB svchost.exe Process ID 10548 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 19 MB svchost.exe Process ID 1232 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.41 MB Peak Memory Usage 7.43 MB svchost.exe Process ID 10704 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 11 MB svchost.exe Process ID 11072 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\svchost.exe Memory Usage 21 MB Peak Memory Usage 23 MB svchost.exe Process ID 1264 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 61 MB Peak Memory Usage 62 MB svchost.exe Process ID 8648 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 16 MB svchost.exe Process ID 5052 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.24 MB Peak Memory Usage 9.53 MB svchost.exe Process ID 5100 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.11 MB Peak Memory Usage 8.24 MB svchost.exe Process ID 11336 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 11 MB svchost.exe Process ID 1424 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 34 MB Peak Memory Usage 35 MB svchost.exe Process ID 1476 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 19 MB svchost.exe Process ID 1528 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 27 MB Peak Memory Usage 28 MB svchost.exe Process ID 5316 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 17 MB svchost.exe Process ID 1644 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.30 MB Peak Memory Usage 11 MB svchost.exe Process ID 1744 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 13 MB svchost.exe Process ID 1760 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 13 MB svchost.exe Process ID 13188 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 18 MB svchost.exe Process ID 1828 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 22 MB Peak Memory Usage 22 MB svchost.exe Process ID 1836 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 14 MB Peak Memory Usage 14 MB svchost.exe Process ID 1844 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 21 MB Peak Memory Usage 21 MB svchost.exe Process ID 1932 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 20 MB Peak Memory Usage 20 MB svchost.exe Process ID 1996 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 19 MB Peak Memory Usage 19 MB svchost.exe Process ID 940 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 29 MB Peak Memory Usage 34 MB svchost.exe Process ID 1168 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 22 MB Peak Memory Usage 22 MB svchost.exe Process ID 14216 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 27 MB Peak Memory Usage 30 MB svchost.exe Process ID 2092 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 17 MB svchost.exe Process ID 2144 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 16 MB svchost.exe Process ID 13640 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 14 MB svchost.exe Process ID 9780 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\svchost.exe Memory Usage 29 MB Peak Memory Usage 30 MB svchost.exe Process ID 2164 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 17 MB svchost.exe Process ID 2288 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 23 MB Peak Memory Usage 23 MB svchost.exe Process ID 2340 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 37 MB Peak Memory Usage 39 MB svchost.exe Process ID 2348 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 43 MB Peak Memory Usage 43 MB svchost.exe Process ID 2468 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 19 MB svchost.exe Process ID 15480 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 12 MB svchost.exe Process ID 2508 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 27 MB Peak Memory Usage 31 MB svchost.exe Process ID 11660 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 19 MB svchost.exe Process ID 14780 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 30 MB svchost.exe Process ID 2860 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 13 MB svchost.exe Process ID 2868 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 16 MB svchost.exe Process ID 5940 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.84 MB Peak Memory Usage 8.88 MB svchost.exe Process ID 13564 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.19 MB Peak Memory Usage 8.25 MB svchost.exe Process ID 2904 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 16 MB svchost.exe Process ID 1868 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.96 MB Peak Memory Usage 11 MB svchost.exe Process ID 11332 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 25 MB Peak Memory Usage 25 MB svchost.exe Process ID 2940 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 22 MB Peak Memory Usage 22 MB svchost.exe Process ID 3088 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 18 MB svchost.exe Process ID 3156 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 17 MB Peak Memory Usage 18 MB svchost.exe Process ID 3164 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 19 MB Peak Memory Usage 21 MB svchost.exe Process ID 3172 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 18 MB svchost.exe Process ID 3424 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 15 MB svchost.exe Process ID 3584 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 34 MB Peak Memory Usage 36 MB svchost.exe Process ID 3824 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 21 MB Peak Memory Usage 22 MB svchost.exe Process ID 4144 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 29 MB Peak Memory Usage 29 MB svchost.exe Process ID 4312 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 27 MB Peak Memory Usage 33 MB svchost.exe Process ID 4328 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 18 MB svchost.exe Process ID 4408 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 23 MB Peak Memory Usage 23 MB svchost.exe Process ID 4416 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 14 MB Peak Memory Usage 15 MB svchost.exe Process ID 4424 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 19 MB Peak Memory Usage 19 MB svchost.exe Process ID 4484 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 26 MB Peak Memory Usage 26 MB svchost.exe Process ID 4580 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 34 MB Peak Memory Usage 34 MB svchost.exe Process ID 12796 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.90 MB Peak Memory Usage 7.93 MB svchost.exe Process ID 4776 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 24 MB Peak Memory Usage 25 MB svchost.exe Process ID 4944 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 19 MB Peak Memory Usage 19 MB svchost.exe Process ID 17932 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.65 MB Peak Memory Usage 7.77 MB svchost.exe Process ID 5160 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 14 MB Peak Memory Usage 14 MB svchost.exe Process ID 5176 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 18 MB svchost.exe Process ID 16244 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 12 MB Peak Memory Usage 12 MB svchost.exe Process ID 5184 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 54 MB Peak Memory Usage 203 MB svchost.exe Process ID 5196 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.38 MB Peak Memory Usage 9.43 MB svchost.exe Process ID 5204 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 21 MB Peak Memory Usage 21 MB svchost.exe Process ID 5244 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 88 MB Peak Memory Usage 89 MB svchost.exe Process ID 5252 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 18 MB svchost.exe Process ID 5260 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 32 MB Peak Memory Usage 33 MB svchost.exe Process ID 5268 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 18 MB svchost.exe Process ID 5308 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 13 MB svchost.exe Process ID 5328 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 37 MB Peak Memory Usage 40 MB svchost.exe Process ID 5392 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 16 MB svchost.exe Process ID 6236 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 29 MB Peak Memory Usage 29 MB svchost.exe Process ID 6428 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 13 MB svchost.exe Process ID 7148 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 44 MB Peak Memory Usage 46 MB svchost.exe Process ID 17768 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 11 MB svchost.exe Process ID 7364 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 18 MB svchost.exe Process ID 8668 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.46 MB Peak Memory Usage 8.50 MB svchost.exe Process ID 8804 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 31 MB Peak Memory Usage 32 MB svchost.exe Process ID 8820 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 14 MB svchost.exe Process ID 9172 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 49 MB Peak Memory Usage 54 MB svchost.exe Process ID 4020 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 18 MB svchost.exe Process ID 9964 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\svchost.exe Memory Usage 28 MB Peak Memory Usage 37 MB svchost.exe Process ID 10200 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\svchost.exe Memory Usage 36 MB Peak Memory Usage 38 MB svchost.exe Process ID 10208 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 20 MB Peak Memory Usage 23 MB svchost.exe Process ID 15548 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.50 MB Peak Memory Usage 6.51 MB svchost.exe Process ID 19352 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.84 MB Peak Memory Usage 8.57 MB svchost.exe Process ID 21876 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 18 MB System Process ID 4 Memory Usage 11 MB Peak Memory Usage 11 MB System Idle Process Process ID 0 taskhostw.exe Process ID 10260 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\System32\taskhostw.exe Memory Usage 23 MB Peak Memory Usage 23 MB TCPSVCS.EXE Process ID 5300 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\TCPSVCS.EXE Memory Usage 9.39 MB Peak Memory Usage 9.43 MB TextInputHost.exe Process ID 14864 User Jonah Exp Domain COGO-RYZEN5 Path C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe Memory Usage 50 MB Peak Memory Usage 51 MB unsecapp.exe Process ID 7456 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\unsecapp.exe Memory Usage 17 MB Peak Memory Usage 17 MB updatesrv.exe Process ID 5464 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe Memory Usage 45 MB Peak Memory Usage 47 MB UtcDecoderHost.exe Process ID 20984 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\UtcDecoderHost.exe Memory Usage 7.21 MB Peak Memory Usage 7.37 MB wininit.exe Process ID 384 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wininit.exe Memory Usage 6.30 MB Peak Memory Usage 6.61 MB winlogon.exe Process ID 1108 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\winlogon.exe Memory Usage 27 MB Peak Memory Usage 35 MB WmiPrvSE.exe Process ID 7544 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 18 MB Peak Memory Usage 19 MB WmiPrvSE.exe Process ID 17488 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 22 MB Peak Memory Usage 22 MB WUDFHost.exe Process ID 1352 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\WUDFHost.exe Memory Usage 23 MB Peak Memory Usage 23 MB YourPhone.exe Process ID 8472 User Jonah Exp Domain COGO-RYZEN5 Path C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20081.116.0_x64__8wekyb3d8bbwe\YourPhone.exe Memory Usage 160 MB Peak Memory Usage 212 MB Security Options Accounts: Administrator account status Disabled Accounts: Block Microsoft accounts Not Defined Accounts: Guest account status Disabled Accounts: Limit local account use of blank passwords to console logon only Enabled Accounts: Rename administrator account Administrator Accounts: Rename guest account Guest Audit: Audit the access of global system objects Disabled Audit: Audit the use of Backup and Restore privilege Disabled Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings Not Defined Audit: Shut down system immediately if unable to log security audits Disabled DCOM: Machine Access Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined DCOM: Machine Launch Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined Devices: Allow undock without having to log on Enabled Devices: Allowed to format and eject removable media Not Defined Devices: Prevent users from installing printer drivers Disabled Devices: Restrict CD-ROM access to locally logged-on user only Not Defined Devices: Restrict floppy access to locally logged-on user only Not Defined Domain controller: Allow server operators to schedule tasks Not Defined Domain controller: Allow vulnerable Netlogon secure channel connections Not Defined Domain controller: LDAP server channel binding token requirements Not Defined Domain controller: LDAP server signing requirements Not Defined Domain controller: Refuse machine account password changes Not Defined Domain member: Digitally encrypt or sign secure channel data (always) Enabled Domain member: Digitally encrypt secure channel data (when possible) Enabled Domain member: Digitally sign secure channel data (when possible) Enabled Domain member: Disable machine account password changes Disabled Domain member: Maximum machine account password age 30 days Domain member: Require strong (Windows 2000 or later) session key Enabled Interactive logon: Display user information when the session is locked Not Defined Interactive logon: Do not require CTRL+ALT+DEL Disabled Interactive logon: Don't display last signed-in Disabled Interactive logon: Don't display username at sign-in Not Defined Interactive logon: Machine account lockout threshold Not Defined Interactive logon: Machine inactivity limit Not Defined Interactive logon: Message text for users attempting to log on Fuck you Interactive logon: Message title for users attempting to log on I got two words for you Interactive logon: Number of previous logons to cache (in case domain controller is not available) 10 logons Interactive logon: Prompt user to change password before expiration 5 days Interactive logon: Require Domain Controller authentication to unlock workstation Disabled Interactive logon: Require Windows Hello for Business or smart card Not Defined Interactive logon: Smart card removal behavior Not Defined Microsoft network client: Digitally sign communications (always) Disabled Microsoft network client: Digitally sign communications (if server agrees) Enabled Microsoft network client: Send unencrypted password to third-party SMB servers Disabled Microsoft network server: Amount of idle time required before suspending session Not Defined Microsoft network server: Attempt S4U2Self to obtain claim information Not Defined Microsoft network server: Digitally sign communications (always) Not Defined Microsoft network server: Digitally sign communications (if client agrees) Not Defined Microsoft network server: Disconnect clients when logon hours expire Not Defined Microsoft network server: Server SPN target name validation level Not Defined Minimum password length audit Not Defined Network access: Allow anonymous SID/Name translation Disabled Network access: Do not allow anonymous enumeration of SAM accounts Enabled Network access: Do not allow anonymous enumeration of SAM accounts and shares Disabled Network access: Do not allow storage of passwords and credentials for network authentication Disabled Network access: Let Everyone permissions apply to anonymous users Disabled Network access: Named Pipes that can be accessed anonymously Network access: Remotely accessible registry paths System\CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server Applications,Software\Microsoft\Windows NT\CurrentVersion Network access: Remotely accessible registry paths and sub-paths System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\SysmonLog Network access: Restrict anonymous access to Named Pipes and Shares Enabled Network access: Restrict clients allowed to make remote calls to SAM Network access: Shares that can be accessed anonymously Not Defined Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Network security: Allow Local System to use computer identity for NTLM Not Defined Network security: Allow LocalSystem NULL session fallback Not Defined Network security: Allow PKU2U authentication requests to this computer to use online identities. Not Defined Network security: Configure encryption types allowed for Kerberos Not Defined Network security: Do not store LAN Manager hash value on next password change Enabled Network security: Force logoff when logon hours expire Disabled Network security: LAN Manager authentication level Send LM & NTLM - use NTLMv2 session security if negotiated Network security: LDAP client signing requirements Negotiate signing Network security: Minimum session security for NTLM SSP based (including secure RPC) clients Require 128-bit encryption Network security: Minimum session security for NTLM SSP based (including secure RPC) servers Require 128-bit encryption Network security: Restrict NTLM: Add remote server exceptions for NTLM authentication Not Defined Network security: Restrict NTLM: Add server exceptions in this domain Not Defined Network security: Restrict NTLM: Audit Incoming NTLM Traffic Not Defined Network security: Restrict NTLM: Audit NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Incoming NTLM traffic Not Defined Network security: Restrict NTLM: NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Outgoing NTLM traffic to remote servers Not Defined Recovery console: Allow automatic administrative logon Not Defined Recovery console: Allow floppy copy and access to all drives and all folders Not Defined Relax minimum password length limits Not Defined Shutdown: Allow system to be shut down without having to log on Enabled Shutdown: Clear virtual memory pagefile Disabled System cryptography: Force strong key protection for user keys stored on the computer Not Defined System cryptography: Use FIPS compliant algorithms for encryption, hashing, and signing Disabled System objects: Require case insensitivity for non-Windows subsystems Enabled System objects: Strengthen default permissions of internal system objects (e.g. Symbolic Links) Enabled System settings: Optional subsystems System settings: Use Certificate Rules on Windows Executables for Software Restriction Policies Not Defined User Account Control: Admin Approval Mode for the Built-in Administrator account Enabled User Account Control: Allow UIAccess applications to prompt for elevation without using the secure desktop Disabled User Account Control: Behavior of the elevation prompt for administrators in Admin Approval Mode Prompt for consent on the secure desktop User Account Control: Behavior of the elevation prompt for standard users Prompt for credentials User Account Control: Detect application installations and prompt for elevation Enabled User Account Control: Only elevate executables that are signed and validated Disabled User Account Control: Only elevate UIAccess applications that are installed in secure locations Enabled User Account Control: Run all administrators in Admin Approval Mode Enabled User Account Control: Switch to the secure desktop when prompting for elevation Enabled User Account Control: Virtualize file and registry write failures to per-user locations Enabled Device Tree ACPI x64-based PC Microsoft ACPI-Compliant System ACPI Fixed Feature Button ACPI Power Button AMD GPIO Controller AMD GPIO Controller AMD Ryzen 5 3600 6-Core Processor AMD Ryzen 5 3600 6-Core Processor AMD Ryzen 5 3600 6-Core Processor AMD Ryzen 5 3600 6-Core Processor AMD Ryzen 5 3600 6-Core Processor AMD Ryzen 5 3600 6-Core Processor AMD Ryzen 5 3600 6-Core Processor AMD Ryzen 5 3600 6-Core Processor AMD Ryzen 5 3600 6-Core Processor AMD Ryzen 5 3600 6-Core Processor AMD Ryzen 5 3600 6-Core Processor AMD Ryzen 5 3600 6-Core Processor High precision event timer Microsoft Windows Management Interface for ACPI Microsoft Windows Management Interface for ACPI Motherboard resources Motherboard resources Trusted Platform Module 2.0 PCI Express Root Complex AMD SMBus Motherboard resources Motherboard resources PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge PCI standard host CPU bridge System board PCI Express Root Port Standard NVM Express Controller CT1000P1SSD8 PCI Express Root Port AMD USB 3.10 eXtensible Host Controller - 1.10 (Microsoft) USB Root Hub (USB 3.0) USB Input Device HID-compliant mouse Microsoft Usbccid Smartcard Reader (WUDF) Smart card filter driver USB Composite Device USB Input Device HID Keyboard Device USB Input Device HID-compliant consumer control device HID-compliant consumer control device HID-compliant system controller HID-compliant vendor-defined device AMD Virtualized AHCI Controller for Ryzen 400 series Corsair CSSD-F160GBP2 WDC WD20EARS-00MVWB0 WDC WD20EARS-00MVWB0 PCI Express Upstream Switch Port PCI Express Downstream Switch Port PCI Express Downstream Switch Port PCI Express Downstream Switch Port PCI Express Downstream Switch Port PCI Express Downstream Switch Port Realtek PCIe GbE Family Controller PCI Express Root Port NVIDIA GeForce GTX TITAN Black Generic PnP Monitor High Definition Audio Controller NVIDIA High Definition Audio PCI Express Root Port AMD PCI PCI Express Root Port AMD PCI AMD PSP 11.0 Device Motherboard resources AMD USB 3.10 eXtensible Host Controller - 1.10 (Microsoft) USB Root Hub (USB 3.0) High Definition Audio Controller Realtek(R) Audio DTS Audio Effects Component DTS Audio Hardware Support Application Realtek Asio Component Realtek Audio Effects Component Realtek Audio Universal Service Realtek Digital Output (Realtek Audio) Realtek Hardware Support Application Speakers (Realtek Audio) PCI Express Root Port Standard SATA AHCI Controller PCI Express Root Port Standard SATA AHCI Controller PCI standard ISA bridge Direct memory access controller Motherboard resources Programmable interrupt controller System CMOS/real time clock System speaker System timer Microsoft UEFI-Compliant System System Firmware CPU AMD Ryzen 5 Cores 6 Threads 12 Name AMD Ryzen 5 Specification AMD Ryzen 5 3600 6-Core Processor Family F Extended Family 17 Model 1 Extended Model 71 Stepping 0 Instructions MMX (+), SSE, SSE2, SSE3, SSSE3, SSE4.1, SSE4.2, SSE4A, AMD 64, NX, AES, AVX, AVX2, FMA3 Virtualization Not supported Hyperthreading Supported, Enabled Fan Speed 1869 RPM Bus Speed 98.5 MHz Caches L1 Data Cache Size 6 x 32 KBytes L1 Instructions Cache Size 6 x 32 KBytes L2 Unified Cache Size 6 x 512 KBytes L3 Unified Cache Size 2 x 16384 KBytes Cores Core 0 Core Speed 3892.5 MHz Multiplier x 39.5 Bus Speed 98.5 MHz Threads APIC ID: 0, 1 Core 1 Core Speed 3892.5 MHz Multiplier x 39.5 Bus Speed 98.5 MHz Threads APIC ID: 2, 3 Core 2 Core Speed 3892.5 MHz Multiplier x 39.5 Bus Speed 98.5 MHz Threads APIC ID: 4, 5 Core 3 Core Speed 3892.5 MHz Multiplier x 39.5 Bus Speed 98.5 MHz Threads APIC ID: 8, 9 Core 4 Core Speed 3892.5 MHz Multiplier x 39.5 Bus Speed 98.5 MHz Threads APIC ID: 10, 11 Core 5 Core Speed 3892.5 MHz Multiplier x 39.5 Bus Speed 98.5 MHz Threads APIC ID: 12, 13 RAM Memory Size 16324 MBytes Physical Memory Memory Usage 46 % Total Physical 16 GB Available Physical 8.52 GB Total Virtual 33 GB Available Virtual 25 GB SPD Number Of SPD Modules 0 Motherboard Manufacturer ASUSTeK COMPUTER INC. Model TUF B450-PLUS GAMING (AM4) Version Rev X.0x Chipset Vendor AMD Chipset Model ID1480 Chipset Revision 00 Southbridge Vendor AMD Southbridge Model Carrizo FCH Southbridge Revision 51 System Temperature 50 °C BIOS Brand American Megatrends Inc. Version 2202 Date 2020-07-14 Voltage CPU CORE 1.363 V MEMORY CONTROLLER 2.529 V VIN2 1.995 V VIN3 2.027 V VIN7 1.689 V PCI Data Slot PCI-E Slot Type PCI-E Slot Usage In Use Data lanes x16 Slot Designation PCIEX16_1 Characteristics 3.3V, Shared, PME Slot Number 0 Slot PCI-E Slot Type PCI-E Slot Usage Available Data lanes x4 Slot Designation PCIEX16_2 Characteristics 3.3V, Shared, PME Slot Number 1 Slot PCI-E Slot Type PCI-E Slot Usage Available Data lanes x1 Slot Designation PCIEX1_1 Characteristics 3.3V, Shared, PME Slot Number 2 Slot PCI-E Slot Type PCI-E Slot Usage Available Data lanes x1 Slot Designation PCIEX1_2 Characteristics 3.3V, Shared, PME Slot Number 3 Slot PCI-E Slot Type PCI-E Slot Usage Available Data lanes x1 Slot Designation PCIEX1_3 Characteristics 3.3V, Shared, PME Slot Number 4 Graphics Monitor Name ASUS VG278HE on NVIDIA GeForce GTX TITAN Black Current Resolution 1920x1080 pixels Work Resolution 1920x1040 pixels State Enabled, Primary, Unsafe Monitor Width 1920 Monitor Height 1080 Monitor BPP 32 bits per pixel Monitor Frequency 100 Hz Device \\.\DISPLAY1\Monitor0 NVIDIA GeForce GTX TITAN Black Manufacturer NVIDIA Model GeForce GTX TITAN Black Device ID 10DE-100C Revision A2 Subvendor NVIDIA (10DE) Current Performance Level Level 0 Current GPU Clock 888 MHz Current Memory Clock 3499 MHz Current Shader Clock 3499 MHz Voltage 0.962 V Technology 28 nm Bus Interface PCI Express x16 Temperature 61 °C Driver version 27.21.14.5206 BIOS Version 80.80.4e.00.01 Physical Memory 2047 MB Virtual Memory 2048 MB Count of performance levels : 1 Level 1 - "Perf Level 0" GPU Clock 888 MHz Shader Clock 3499 MHz Storage Hard drives CT1000P1SSD8 (SSD) Manufacturer Crucial Interface Unknown Capacity 931 GB Real size 1 000 204 886 016 bytes RAID Type None S.M.A.R.T S.M.A.R.T not supported Partition 0 Partition ID Disk #0, Partition #0 File System NTFS Volume Serial Number 90ADAEE3 Size 578 MB Used Space 455 MB (78%) Free Space 123 MB (22%) Partition 1 Partition ID Disk #0, Partition #1 Disk Letter C: File System NTFS Volume Serial Number 46B4E12B Size 930 GB Used Space 333 GB (35%) Free Space 596 GB (65%) Partition 2 Partition ID Disk #0, Partition #2 File System FAT32 Volume Serial Number A246B097 Size 96 MB Used Space 26,5 MB (27%) Free Space 69 MB (73%) WDC WD20EARS-00MVWB0 Manufacturer Western Digital Heads 16 Cylinders 243 201 Tracks 62 016 255 Sectors 3 907 024 065 SATA type SATA-II 3.0Gb/s Device type Fixed ATA Standard ATA8-ACS Serial Number WD-WCAZA2084542 Firmware Version Number 51.0AB51 LBA Size 48-bit LBA Power On Count 771 times Power On Time 3269,4 days Features S.M.A.R.T., AAM, NCQ Max. Transfer Mode SATA II 3.0Gb/s Used Transfer Mode SATA II 3.0Gb/s Interface SATA Capacity 1863 GB Real size 2 000 398 934 016 bytes RAID Type None S.M.A.R.T Status Good Temperature 31 °C Temperature Range OK (less than 50 °C) S.M.A.R.T attributes 01 Attribute name Read Error Rate Real value 0 Current 200 Worst 200 Threshold 51 Raw Value 0000000000 Status Good 03 Attribute name Spin-Up Time Real value 1216 ms Current 253 Worst 160 Threshold 21 Raw Value 00000004C0 Status Good 04 Attribute name Start/Stop Count Real value 22 228 Current 78 Worst 78 Threshold 0 Raw Value 00000056D4 Status Good 05 Attribute name Reallocated Sectors Count Real value 0 Current 200 Worst 200 Threshold 140 Raw Value 0000000000 Status Good 07 Attribute name Seek Error Rate Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good 09 Attribute name Power-On Hours (POH) Real value 3269d 10h Current 1 Worst 1 Threshold 0 Raw Value 0000013282 Status Good 0A Attribute name Spin Retry Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good 0B Attribute name Recalibration Retries Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good 0C Attribute name Device Power Cycle Count Real value 771 Current 100 Worst 100 Threshold 0 Raw Value 0000000303 Status Good C0 Attribute name Power-off Retract Count Real value 327 Current 200 Worst 200 Threshold 0 Raw Value 0000000147 Status Good C1 Attribute name Load/Unload Cycle Count Real value 421 087 Current 60 Worst 60 Threshold 0 Raw Value 0000066CDF Status Good C2 Attribute name Temperature Real value 31 °C Current 119 Worst 82 Threshold 0 Raw Value 000000001F Status Good C4 Attribute name Reallocation Event Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good C5 Attribute name Current Pending Sector Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good C6 Attribute name Uncorrectable Sector Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good C7 Attribute name UltraDMA CRC Error Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good C8 Attribute name Write Error Rate / Multi-Zone Error Rate Real value 2 Current 200 Worst 200 Threshold 0 Raw Value 0000000002 Status Good Partition 0 Partition ID Disk #1, Partition #0 Disk Letter F: File System NTFS Volume Serial Number 02138F93 Size 1863 GB Used Space 1643 GB (88%) Free Space 219 GB (12%) WDC WD20EARS-00MVWB0 Manufacturer Western Digital Heads 16 Cylinders 243 201 Tracks 62 016 255 Sectors 3 907 024 065 SATA type SATA-II 3.0Gb/s Device type Fixed ATA Standard ATA8-ACS Serial Number WD-WCAZA2060217 Firmware Version Number 51.0AB51 LBA Size 48-bit LBA Power On Count 772 times Power On Time 3265,5 days Features S.M.A.R.T., AAM, NCQ Max. Transfer Mode SATA II 3.0Gb/s Used Transfer Mode SATA II 3.0Gb/s Interface SATA Capacity 1863 GB Real size 2 000 398 934 016 bytes RAID Type None S.M.A.R.T Status Good Temperature 30 °C Temperature Range OK (less than 50 °C) S.M.A.R.T attributes 01 Attribute name Read Error Rate Real value 0 Current 198 Worst 198 Threshold 51 Raw Value 000000117C Status Good 03 Attribute name Spin-Up Time Real value 1216 ms Current 253 Worst 160 Threshold 21 Raw Value 00000004C0 Status Good 04 Attribute name Start/Stop Count Real value 22 444 Current 78 Worst 78 Threshold 0 Raw Value 00000057AC Status Good 05 Attribute name Reallocated Sectors Count Real value 0 Current 200 Worst 200 Threshold 140 Raw Value 0000000000 Status Good 07 Attribute name Seek Error Rate Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good 09 Attribute name Power-On Hours (POH) Real value 3265d 11h Current 1 Worst 1 Threshold 0 Raw Value 0000013223 Status Good 0A Attribute name Spin Retry Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good 0B Attribute name Recalibration Retries Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good 0C Attribute name Device Power Cycle Count Real value 772 Current 100 Worst 100 Threshold 0 Raw Value 0000000304 Status Good C0 Attribute name Power-off Retract Count Real value 282 Current 200 Worst 200 Threshold 0 Raw Value 000000011A Status Good C1 Attribute name Load/Unload Cycle Count Real value 189 362 Current 137 Worst 137 Threshold 0 Raw Value 000002E3B2 Status Good C2 Attribute name Temperature Real value 30 °C Current 120 Worst 84 Threshold 0 Raw Value 000000001E Status Good C4 Attribute name Reallocation Event Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good C5 Attribute name Current Pending Sector Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good C6 Attribute name Uncorrectable Sector Count Real value 0 Current 200 Worst 200 Threshold 0 Raw Value 0000000000 Status Good C7 Attribute name UltraDMA CRC Error Count Real value 97 Current 200 Worst 194 Threshold 0 Raw Value 0000000061 Status Good C8 Attribute name Write Error Rate / Multi-Zone Error Rate Real value 214 Current 200 Worst 199 Threshold 0 Raw Value 00000000D6 Status Good Partition 0 Partition ID Disk #2, Partition #0 Disk Letter E: File System NTFS Volume Serial Number 1E614D8B Size 1863 GB Used Space 1656 GB (88%) Free Space 206 GB (12%) Corsair CSSD-F160GBP2 (SSD) Manufacturer Corsair Heads 16 Cylinders 21 889 Tracks 5 581 695 Sectors 351 646 785 SATA type SATA-II 3.0Gb/s Device type Fixed ATA Standard ATA8-ACS Serial Number 10476541340010160002 Firmware Version Number 2.0 LBA Size 48-bit LBA Power On Count 815 times Power On Time 3250,2 days Speed Not used (SSD Drive) Features S.M.A.R.T., NCQ, TRIM, SSD Max. Transfer Mode SATA II 3.0Gb/s Used Transfer Mode SATA II 3.0Gb/s Interface SATA Capacity 167 GB Real size 180 045 766 656 bytes RAID Type None S.M.A.R.T Status Good Temperature 26 °C Temperature Range OK (less than 50 °C) S.M.A.R.T attributes 01 Attribute name Read Error Rate Real value 0 Current 102 Worst 100 Threshold 50 Raw Value 00004FA2BC Status Good 05 Attribute name Retired Block Count Real value 0 Current 100 Worst 100 Threshold 3 Raw Value 0000000000 Status Good 09 Attribute name Power-On Hours (POH) Real value 3250d 4h Current 100 Worst 100 Threshold 0 Raw Value 00000130B4 Status Good 0C Attribute name Device Power Cycle Count Real value 815 Current 100 Worst 100 Threshold 0 Raw Value 000000032F Status Good AB Attribute name Program Fail Block Count Real value 0 Current 0 Worst 0 Threshold 0 Raw Value 0000000000 Status Good AC Attribute name Erase Fail Block Count Real value 0 Current 0 Worst 0 Threshold 0 Raw Value 0000000000 Status Good AE Attribute name Unexpected Power Loss Real value 167 Current 0 Worst 0 Threshold 0 Raw Value 00000000A7 Status Good B1 Attribute name Wear Range Delta Real value 1 Current 0 Worst 0 Threshold 0 Raw Value 0000000001 Status Good B5 Attribute name Program Fail Count Real value 0 Current 0 Worst 0 Threshold 0 Raw Value 0000000000 Status Good B6 Attribute name Erase Fail Count Real value 0 Current 0 Worst 0 Threshold 0 Raw Value 0000000000 Status Good BB Attribute name Reported Uncorrectable Errors Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good C2 Attribute name Temperature Real value 26 °C Current 26 Worst 51 Threshold 0 Raw Value 000033001A Status Good C3 Attribute name On the fly ECC Uncorrectable Error Count Real value 5 219 004 Current 102 Worst 100 Threshold 0 Raw Value 00004FA2BC Status Good C4 Attribute name Reallocation Event Count Real value 0 Current 100 Worst 100 Threshold 0 Raw Value 0000000000 Status Good E7 Attribute name SSD Life Left Real value 0 Current 100 Worst 100 Threshold 10 Raw Value 0000000000 Status Good E9 Attribute name Media Wearout Indicator Real value 6 208 Current 0 Worst 0 Threshold 0 Raw Value 0000001840 Status Good EA Attribute name Vendor Specific Real value 5 888 Current 0 Worst 0 Threshold 0 Raw Value 0000001700 Status Good F1 Attribute name Lifetime Writes From Host Real value 5 888 Current 0 Worst 0 Threshold 0 Raw Value 0000001700 Status Good F2 Attribute name Lifetime Reads from Host Real value 21 312 Current 0 Worst 0 Threshold 0 Raw Value 0000005340 Status Good Partition 0 Partition ID Disk #3, Partition #0 Size 1,00 MB Partition 1 Partition ID Disk #3, Partition #1 Size 167 GB Optical Drives No optical disk drives detected Audio Sound Cards NVIDIA High Definition Audio Realtek High Definition Audio Playback Devices Speakers (Realtek Audio) (default) Realtek Digital Output (Realtek Audio) Peripherals HID Keyboard Device Device Kind Keyboard Device Name HID Keyboard Device Vendor Logitech Location USB Input Device Driver Date 6-21-2006 Version 10.0.19041.1 File C:\WINDOWS\system32\DRIVERS\kbdhid.sys File C:\WINDOWS\system32\DRIVERS\kbdclass.sys HID-compliant mouse Device Kind Mouse Device Name HID-compliant mouse Vendor Logitech Location USB Input Device Driver Date 6-21-2006 Version 10.0.19041.1 File C:\WINDOWS\system32\DRIVERS\mouhid.sys File C:\WINDOWS\system32\DRIVERS\mouclass.sys Printers Microsoft Print to PDF (Default Printer) Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft Print To PDF (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_311ad0065d69f772\Amd64\mxdwdrv.dll Microsoft XPS Document Writer Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft XPS Document Writer v4 (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_311ad0065d69f772\Amd64\mxdwdrv.dll OneNote for Windows 10 Printer Port Microsoft.Office.OneNote_16001.13127.20190.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-2406430611-3727939821-2990407950-1001 Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 300 * 300 dpi Color Status Unknown Driver Driver Name Microsoft Software Printer Driver (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_311ad0065d69f772\Amd64\mxdwdrv.dll Network You are connected to the internet Connected through Realtek PCIe GbE Family Controller IP Address 192.168.1.234 Subnet mask 255.255.255.0 Gateway server 192.168.1.1 Preferred DNS server 192.168.1.1 DHCP Enabled DHCP server 192.168.1.1 External IP Address 81.226.250.141 Adapter Type Ethernet NetBIOS over TCP/IP Enabled via DHCP NETBIOS Node Type Hybrid node Link Speed 1.3 KBps Computer Name NetBIOS Name COGO-RYZEN5 DNS Name Cogo-Ryzen5 Membership Part of workgroup Workgroup SD Remote Desktop Disabled Console State Active Domain COGO-RYZEN5 WinInet Info LAN Connection Local system uses a local area network to connect to the Internet Local system has RAS to connect to the Internet Wi-Fi Info Wi-Fi not enabled WinHTTPInfo WinHTTPSessionProxyType No proxy Session Proxy Session Proxy Bypass Connect Retries 5 Connect Timeout (ms) 60 000 HTTP Version HTTP 1.1 Max Connects Per 1.0 Servers INFINITE Max Connects Per Servers INFINITE Max HTTP automatic redirects 10 Max HTTP status continue 10 Send Timeout (ms) 30 000 IEProxy Auto Detect Yes IEProxy Auto Config IEProxy IEProxy Bypass Default Proxy Config Access Type No proxy Default Config Proxy Default Config Proxy Bypass Sharing and Discovery Network Discovery Enabled File and Printer Sharing Disabled File and printer sharing service Disabled Simple File Sharing Enabled Administrative Shares Enabled Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Adapters List Enabled AnchorFree TAP-Windows Adapter V9 Connection Name Ethernet 2 DHCP enabled Yes MAC Address 00-FF-66-6F-82-34 Realtek PCIe GbE Family Controller Connection-specific DNS Suffix home Connection Name Ethernet NetBIOS over TCPIP Yes DHCP enabled Yes MAC Address D4-5D-64-37-CE-A3 IP Address 192.168.1.234 Subnet mask 255.255.255.0 Gateway server 192.168.1.1 DHCP 192.168.1.1 DNS Server 192.168.1.1 Network Shares No network shares Current TCP Connections ArmouryCrate.Service.exe (5276) Local 127.0.0.1:9487 LISTEN Local 127.0.0.1:9487 ESTABLISHED Remote 127.0.0.1:1576 (Querying... ) Local 127.0.0.1:13010 LISTEN bdservicehost.exe (1556) Local 192.168.1.234:5527 ESTABLISHED Remote 3.127.212.245:443 (Querying... ) (HTTPS) Local 127.0.0.1:1596 ESTABLISHED Remote 127.0.0.1:1597 (Querying... ) Local 127.0.0.1:1597 ESTABLISHED Remote 127.0.0.1:1596 (Querying... ) Local 192.168.1.234:5530 ESTABLISHED Remote 3.127.212.245:443 (Querying... ) (HTTPS) Local 192.168.1.234:5528 ESTABLISHED Remote 3.127.212.245:443 (Querying... ) (HTTPS) Local 127.0.0.1:1540 ESTABLISHED Remote 127.0.0.1:1541 (Querying... ) Local 127.0.0.1:1541 ESTABLISHED Remote 127.0.0.1:1540 (Querying... ) bdservicehost.exe (2580) Local 127.0.0.1:1559 ESTABLISHED Remote 127.0.0.1:1560 (Querying... ) Local 127.0.0.1:1560 ESTABLISHED Remote 127.0.0.1:1559 (Querying... ) BdVpnService.exe (2628) Local 127.0.0.1:1544 ESTABLISHED Remote 127.0.0.1:1545 (Querying... ) Local 127.0.0.1:1545 ESTABLISHED Remote 127.0.0.1:1544 (Querying... ) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe (10268) Local 127.0.0.1:1042 LISTEN Local 127.0.0.1:1043 LISTEN C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe (10452) Local 0.0.0.0:9013 LISTEN Local 127.0.0.1:9012 ESTABLISHED Remote 127.0.0.1:1695 (Querying... ) Local 0.0.0.0:9012 LISTEN C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (12416) Local 192.168.1.234:5021 ESTABLISHED Remote 64.233.161.188:5228 (Querying... ) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (20560) Local 192.168.1.234:5299 ESTABLISHED Remote 172.217.20.33:443 (Querying... ) (HTTPS) Local 192.168.1.234:5301 ESTABLISHED Remote 199.232.41.140:443 (Querying... ) (HTTPS) Local 192.168.1.234:5255 ESTABLISHED Remote 34.198.126.60:443 (Querying... ) (HTTPS) Local 192.168.1.234:5304 ESTABLISHED Remote 199.232.41.140:443 (Querying... ) (HTTPS) Local 192.168.1.234:5309 ESTABLISHED Remote 199.232.41.140:443 (Querying... ) (HTTPS) Local 192.168.1.234:5389 ESTABLISHED Remote 104.94.21.181:443 (Querying... ) (HTTPS) Local 192.168.1.234:5410 ESTABLISHED Remote 199.232.40.134:443 (Querying... ) (HTTPS) Local 192.168.1.234:5413 ESTABLISHED Remote 104.18.169.19:443 (Querying... ) (HTTPS) Local 192.168.1.234:5414 ESTABLISHED Remote 151.101.128.134:443 (Querying... ) (HTTPS) Local 192.168.1.234:5417 ESTABLISHED Remote 104.18.169.19:443 (Querying... ) (HTTPS) Local 192.168.1.234:5419 ESTABLISHED Remote 199.232.42.49:443 (Querying... ) (HTTPS) Local 192.168.1.234:5258 ESTABLISHED Remote 51.105.249.223:443 (Querying... ) (HTTPS) Local 192.168.1.234:5268 ESTABLISHED Remote 199.232.41.140:443 (Querying... ) (HTTPS) Local 192.168.1.234:5269 ESTABLISHED Remote 199.232.41.140:443 (Querying... ) (HTTPS) Local 192.168.1.234:5272 ESTABLISHED Remote 199.232.41.140:443 (Querying... ) (HTTPS) Local 192.168.1.234:5435 ESTABLISHED Remote 216.58.211.129:443 (Querying... ) (HTTPS) Local 192.168.1.234:5441 ESTABLISHED Remote 216.58.207.193:443 (Querying... ) (HTTPS) Local 192.168.1.234:5273 ESTABLISHED Remote 199.232.41.140:443 (Querying... ) (HTTPS) Local 192.168.1.234:5274 ESTABLISHED Remote 199.232.41.140:443 (Querying... ) (HTTPS) Local 192.168.1.234:5291 ESTABLISHED Remote 2.17.1.178:443 (Querying... ) (HTTPS) Local 192.168.1.234:5297 ESTABLISHED Remote 2.17.1.178:443 (Querying... ) (HTTPS) Local 192.168.1.234:5298 ESTABLISHED Remote 2.17.1.178:443 (Querying... ) (HTTPS) Local 192.168.1.234:5303 ESTABLISHED Remote 199.232.41.140:443 (Querying... ) (HTTPS) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (5604) Local 192.168.1.234:5525 ESTABLISHED Remote 52.114.76.35:443 (Querying... ) (HTTPS) C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.UserSessionHelper.exe (9828) Local 127.0.0.1:17945 LISTEN Local 127.0.0.1:1695 ESTABLISHED Remote 127.0.0.1:9012 (Querying... ) Local 127.0.0.1:1576 ESTABLISHED Remote 127.0.0.1:9487 (Querying... ) C:\Program Files\Bitdefender\Bitdefender Security\bdwtxag.exe (13864) Local 192.168.1.234:4996 ESTABLISHED Remote 104.17.108.108:443 (Querying... ) (HTTPS) Local 127.0.0.1:1728 ESTABLISHED Remote 127.0.0.1:1727 (Querying... ) Local 127.0.0.1:1727 ESTABLISHED Remote 127.0.0.1:1728 (Querying... ) DevMgmtService.exe (2604) Local 192.168.1.234:5457 ESTABLISHED Remote 104.17.108.108:443 (Querying... ) (HTTPS) Local 127.0.0.1:1542 ESTABLISHED Remote 127.0.0.1:1543 (Querying... ) Local 127.0.0.1:1543 ESTABLISHED Remote 127.0.0.1:1542 (Querying... ) lsass.exe (1036) Local 0.0.0.0:1536 LISTEN ProductAgentService.exe (5484) Local 192.168.1.234:5420 ESTABLISHED Remote 104.17.108.108:443 (Querying... ) (HTTPS) Local 127.0.0.1:1699 ESTABLISHED Remote 127.0.0.1:1698 (Querying... ) Local 127.0.0.1:1698 ESTABLISHED Remote 127.0.0.1:1699 (Querying... ) ROGLiveService.exe (5292) Local 127.0.0.1:13030 LISTEN services.exe (876) Local 0.0.0.0:1583 LISTEN spoolsv.exe (4832) Local 0.0.0.0:1558 LISTEN svchost.exe (10548) Local 0.0.0.0:5040 LISTEN svchost.exe (11660) Local 0.0.0.0:7680 LISTEN svchost.exe (1424) Local 0.0.0.0:135 (DCE) LISTEN svchost.exe (2340) Local 0.0.0.0:1539 LISTEN svchost.exe (5328) Local 192.168.1.234:1590 ESTABLISHED Remote 51.105.249.239:443 (Querying... ) (HTTPS) svchost.exe (940) Local 0.0.0.0:1538 LISTEN System Process Local 192.168.1.234:5524 TIME-WAIT Remote 18.194.170.203:443 (Querying... ) (HTTPS) Local 192.168.1.234:5424 TIME-WAIT Remote 18.158.163.102:443 (Querying... ) (HTTPS) Local 192.168.1.234:5423 TIME-WAIT Remote 18.158.163.102:443 (Querying... ) (HTTPS) Local 192.168.1.234:5422 TIME-WAIT Remote 18.158.163.102:443 (Querying... ) (HTTPS) System Process Local 0.0.0.0:445 (Windows shares) LISTEN Local 0.0.0.0:2869 LISTEN Local 0.0.0.0:5357 LISTEN Local 192.168.1.234:139 (NetBIOS session service) LISTEN TCPSVCS.EXE (5300) Local 0.0.0.0:9 LISTEN Local 0.0.0.0:13 LISTEN Local 0.0.0.0:17 LISTEN Local 0.0.0.0:19 LISTEN Local 0.0.0.0:7 LISTEN wininit.exe (384) Local 0.0.0.0:1537 LISTEN Generated with Speccy v1.32.740