CCCONDT088 - S.chhiny
CCCONDT088 - S.chhiny
Operating System
Windows 10 Pro 64-bit
CPU
Intel Xeon E3 1220 @ 3.00GHz 32 �C
Skylake 14nm Technology
RAM
16.0GB Dual-Channel Unknown @ 1064MHz (15-15-15-35)
Motherboard
Dell Inc. 09WH54 (Socket 0)
Graphics
DELL S2340L (1920x1080@60Hz)
DELL S2340L (1920x1080@60Hz)
2047MB NVIDIA Quadro K620 (NVIDIA) 45 �C
Storage
238GB TS256GSSD360S (SATA (SSD)) 21 �C
931GB Seagate ST1000DM003-1SB102 (SATA ) 36 �C
Optical Drives
HL-DT-ST DVD+-RW GHB0N
Audio
Realtek Audio
Operating System
Windows 10 Pro 64-bit
Computer type: Mini Tower
Installation Date: 4/20/2020 12:43:46 PM
Serial Number: R3HB7-X6HMH-F48J3-8XJVP-9QBP9
Windows Security Center
User Account Control (UAC) Enabled
Notify level 2 - Default
Windows Update
AutoUpdate Not configured
Windows Defender
Windows Defender Disabled
Firewall
Firewall Enabled
Display Name Symantec Endpoint Protection
Antivirus
Symantec Endpoint Protection
Antivirus Enabled
Company Name Symantec
Product Version 14.2.3335.1000
Virus Signature Database Up to date
Windows Defender
Antivirus Disabled
Virus Signature Database Up to date
.NET Frameworks installed
v4.8 Full
v4.8 Client
v3.5 SP1
v3.0 SP2
v2.0 SP2
Internet Explorer
Version 11.1198.18362.0
PowerShell
Version 5.1.18362.1
Environment Variables
USERPROFILE C:\Users\Administrator
SystemRoot C:\Windows
User Variables
OneDrive C:\Users\Administrator\OneDrive
Path C:\Users\Administrator\AppData\Local\Microsoft\
WindowsApps
TEMP C:\Users\Administrator\AppData\Local\Temp
TMP C:\Users\Administrator\AppData\Local\Temp
Machine Variables
ADSK_CLM_WPAD_PROXY_CHECK FALSE
ComSpec C:\Windows\system32\cmd.exe
DriverData C:\Windows\System32\Drivers\DriverData
NUMBER_OF_PROCESSORS 4
OS Windows_NT
Path C:\Windows\system32
C:\Windows
C:\Windows\System32\Wbem
C:\Windows\System32\WindowsPowerShell\v1.0\
C:\Windows\System32\OpenSSH\
C:\Program Files\Microsoft SQL Server\120\Tools\Binn\
C:\Program Files\Common Files\Autodesk Shared\
PATHEXT
.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
PROCESSOR_ARCHITECTURE AMD64
PROCESSOR_IDENTIFIER Intel64 Family 6 Model 94
Stepping 3, GenuineIntel
PROCESSOR_LEVEL 6
PROCESSOR_REVISION 5e03
PSModulePath %ProgramFiles%\WindowsPowerShell\
Modules
C:\Windows\system32\WindowsPowerShell\v1.0\Modules
TEMP C:\Windows\TEMP
TMP C:\Windows\TEMP
USERNAME SYSTEM
windir C:\Windows
Power Profile
Active power scheme Balanced
Hibernation Enabled
Turn Off Monitor after: (On AC Power) 10 min
Turn Off Hard Disk after: (On AC Power) 20 min
Suspend after: (On AC Power) 30 min
Screen saver Disabled
Uptime
Current Session
Current Time 12/28/2020 11:20:38 AM
Current Uptime 594,375 sec (6 d, 21 h, 06 m, 15 s)
Last Boot Time 12/21/2020 2:14:23 PM
Services
Running Adobe Acrobat Update Service
Running AnyDesk Service
Running Application Information
Running AppX Deployment Service (AppXSVC)
Running Autodesk Desktop App Service
Running AVCTP service
Running Background Tasks Infrastructure Service
Running Base Filtering Engine
Running Capability Access Manager Service
Running Clipboard User Service_1016f329
Running CNG Key Isolation
Running COM+ Event System
Running Connected Devices Platform Service
Running Connected Devices Platform User Service_1016f329
Running Connected User Experiences and Telemetry
Running Corel License Validation Service V2, Powered by
arvato
Running CoreMessaging
Running Credential Manager
Running Cryptographic Services
Running Data Sharing Service
Running Data Usage
Running DCOM Server Process Launcher
Running Delivery Optimization
Running Device Association Service
Running DHCP Client
Running Diagnostic Policy Service
Running Diagnostic Service Host
Running Diagnostic System Host
Running Display Policy Service
Running Distributed Link Tracking Client
Running DNS Client
Running FlexNet Licensing Service 64
Running FortiClient VPN Service Scheduler
Running Geolocation Service
Running Group Policy Client
Running Human Interface Device Service
Running IKE and AuthIP IPsec Keying Modules
Running Intel Dynamic Application Loader Host Interface
Service
Running IP Helper
Running IPsec Policy Agent
Running Local Session Manager
Running Microsoft Account Sign-in Assistant
Running Microsoft Store Install Service
Running Microsoft Update Health Service
Running Netlogon
Running Network Connection Broker
Running Network Connections
Running Network List Service
Running Network Location Awareness
Running Network Store Interface Service
Running NVIDIA Display Container LS
Running NVIDIA WMI Provider
Running Payments and NFC/SE Manager
Running Plug and Play
Running Power
Running Print Spooler
Running Program Compatibility Assistant Service
Running Realtek Audio Service
Running Remote Access Connection Manager
Running Remote Procedure Call (RPC)
Running RPC Endpoint Mapper
Running RunSwUSB
Running Secure Socket Tunneling Protocol Service
Running Security Accounts Manager
Running Security Center
Running Server
Running Shell Hardware Detection
Running SQL Server VSS Writer
Running SSDP Discovery
Running State Repository Service
Running Storage Service
Running Symantec Endpoint Protection
Running Symantec Endpoint Protection Hardening Detection
Running Symantec Endpoint Protection Hardening Prevention
Running Symantec Endpoint Protection Hardening Utility
Running Symantec Endpoint Protection WSC Service
Running Sync Host_1016f329
Running SysMain
Running System Event Notification Service
Running System Events Broker
Running System Guard Runtime Monitor Broker
Running Task Scheduler
Running TCP/IP NetBIOS Helper
Running Telephony
Running Themes
Running Time Broker
Running Touch Keyboard and Handwriting Panel Service
Running Update Orchestrator Service
Running User Manager
Running User Profile Service
Running V-Ray Swarm
Running VRLService
Running Web Account Manager
Running Windows Audio
Running Windows Audio Endpoint Builder
Running Windows Biometric Service
Running Windows Connection Manager
Running Windows Defender Firewall
Running Windows Event Log
Running Windows Font Cache Service
Running Windows Image Acquisition (WIA)
Running Windows License Manager Service
Running Windows Management Instrumentation
Running Windows Push Notifications System Service
Running Windows Push Notifications User Service_1016f329
Running Windows Search
Running Windows Security Service
Running Windows Time
Running WinHTTP Web Proxy Auto-Discovery Service
Running WLAN AutoConfig
Running Workstation
Stopped ActiveX Installer (AxInstSV)
Stopped Adobe Flash Player Update Service
Stopped Agent Activation Runtime_1016f329
Stopped AllJoyn Router Service
Stopped App Readiness
Stopped Application Identity
Stopped Application Layer Gateway Service
Stopped Application Management
Stopped AssignedAccessManager Service
Stopped Auto Time Zone Updater
Stopped Background Intelligent Transfer Service
Stopped BitLocker Drive Encryption Service
Stopped Block Level Backup Engine Service
Stopped Bluetooth Audio Gateway Service
Stopped Bluetooth Support Service
Stopped Bluetooth User Support Service_1016f329
Stopped BranchCache
Stopped CaptureService_1016f329
Stopped Cellular Time
Stopped Certificate Propagation
Stopped Client License Service (ClipSVC)
Stopped COM+ System Application
Stopped ConsentUX_1016f329
Stopped Contact Data_1016f329
Stopped CredentialEnrollmentManagerUserSvc_1016f329
Stopped Device Install Service
Stopped Device Management Enrollment Service
Stopped Device Management Wireless Application Protocol (WAP)
Push message Routing Service
Stopped Device Setup Manager
Stopped DeviceAssociationBroker_1016f329
Stopped DevicePicker_1016f329
Stopped DevicesFlow_1016f329
Stopped DevQuery Background Discovery Broker
Stopped Diagnostic Execution Service
Stopped Display Enhancement Service
Stopped Distributed Transaction Coordinator
Stopped Downloaded Maps Manager
Stopped Embedded Mode
Stopped Encrypting File System (EFS)
Stopped Enterprise App Management Service
Stopped Extensible Authentication Protocol
Stopped Fax
Stopped File History Service
Stopped Function Discovery Provider Host
Stopped Function Discovery Resource Publication
Stopped GameDVR and Broadcast User Service_1016f329
Stopped Google Chrome Elevation Service
Stopped Google Update Service (gupdate)
Stopped Google Update Service (gupdatem)
Stopped GraphicsPerfSvc
Stopped HV Host Service
Stopped Hyper-V Data Exchange Service
Stopped Hyper-V Guest Service Interface
Stopped Hyper-V Guest Shutdown Service
Stopped Hyper-V Heartbeat Service
Stopped Hyper-V PowerShell Direct Service
Stopped Hyper-V Remote Desktop Virtualization Service
Stopped Hyper-V Time Synchronization Service
Stopped Hyper-V Volume Shadow Copy Requestor
Stopped Intel Capability Licensing Service TCP IP Interface
Stopped Intel TPM Provisioning Service
Stopped Internet Connection Sharing (ICS)
Stopped IP Translation Configuration Service
Stopped KtmRm for Distributed Transaction Coordinator
Stopped Language Experience Service
Stopped Link-Layer Topology Discovery Mapper
Stopped Local Profile Assistant Service
Stopped MessagingService_1016f329
Stopped Microsoft Diagnostics Hub Standard Collector Service
Stopped Microsoft App-V Client
Stopped Microsoft Edge Elevation Service
(MicrosoftEdgeElevationService)
Stopped Microsoft Edge Update Service (edgeupdate)
Stopped Microsoft Edge Update Service (edgeupdatem)
Stopped Microsoft iSCSI Initiator Service
Stopped Microsoft Passport
Stopped Microsoft Passport Container
Stopped Microsoft Software Shadow Copy Provider
Stopped Microsoft Storage Spaces SMP
Stopped Microsoft Windows SMS Router Service.
Stopped Natural Authentication
Stopped Net.Tcp Port Sharing Service
Stopped Network Connected Devices Auto-Setup
Stopped Network Connectivity Assistant
Stopped Network Setup Service
Stopped Office 64 Source Engine
Stopped Offline Files
Stopped OpenSSH Authentication Agent
Stopped Optimize drives
Stopped Parental Controls
Stopped Peer Name Resolution Protocol
Stopped Peer Networking Grouping
Stopped Peer Networking Identity Manager
Stopped Performance Counter DLL Host
Stopped Performance Logs & Alerts
Stopped Phone Service
Stopped PNRP Machine Name Publication Service
Stopped Portable Device Enumerator Service
Stopped Printer Extensions and Notifications
Stopped PrintWorkflow_1016f329
Stopped Problem Reports and Solutions Control Panel Support
Stopped Quality Windows Audio Video Experience
Stopped Radio Management Service
Stopped Recommended Troubleshooting Service
Stopped Remote Access Auto Connection Manager
Stopped Remote Desktop Configuration
Stopped Remote Desktop Services
Stopped Remote Desktop Services UserMode Port Redirector
Stopped Remote Procedure Call (RPC) Locator
Stopped Remote Registry
Stopped Retail Demo Service
Stopped Routing and Remote Access
Stopped Secondary Logon
Stopped Sensor Data Service
Stopped Sensor Monitoring Service
Stopped Sensor Service
Stopped Shared PC Account Manager
Stopped Smart Card
Stopped Smart Card Device Enumeration Service
Stopped Smart Card Removal Policy
Stopped SNMP Trap
Stopped Software Protection
Stopped Spatial Data Service
Stopped Spot Verifier
Stopped Still Image Acquisition Events
Stopped Storage Tiers Management
Stopped Symantec Endpoint Protection Hardening CAF Service
Stopped Symantec Endpoint Protection Local Proxy Service
Stopped Symantec Network Access Control
Stopped UPnP Device Host
Stopped User Data Access_1016f329
Stopped User Data Storage_1016f329
Stopped User Experience Virtualization Service
Stopped Virtual Disk
Stopped Volume Shadow Copy
Stopped Volumetric Audio Compositor Service
Stopped WalletService
Stopped WarpJITSvc
Stopped WebClient
Stopped Wi-Fi Direct Services Connection Manager Service
Stopped Windows Backup
Stopped Windows Camera Frame Server
Stopped Windows Connect Now - Config Registrar
Stopped Windows Defender Advanced Threat Protection Service
Stopped Windows Defender Antivirus Network Inspection Service
Stopped Windows Defender Antivirus Service
Stopped Windows Encryption Provider Host Service
Stopped Windows Error Reporting Service
Stopped Windows Event Collector
Stopped Windows Insider Service
Stopped Windows Installer
Stopped Windows Management Service
Stopped Windows Media Player Network Sharing Service
Stopped Windows Mixed Reality OpenXR Service
Stopped Windows Mobile Hotspot Service
Stopped Windows Modules Installer
Stopped Windows Perception Service
Stopped Windows Perception Simulation Service
Stopped Windows Presentation Foundation Font Cache 3.0.0.0
Stopped Windows PushToInstall Service
Stopped Windows Remote Management (WS-Management)
Stopped Windows Update
Stopped Windows Update Medic Service
Stopped Wired AutoConfig
Stopped WMI Performance Adapter
Stopped Work Folders
Stopped WWAN AutoConfig
Stopped Xbox Accessory Management Service
Stopped Xbox Live Auth Manager
Stopped Xbox Live Game Save
Stopped Xbox Live Networking Service
TimeZone
TimeZone GMT +7:00 Hours
Language English (United States)
Location United States
Format English (United States)
Currency $
Date Format M/d/yyyy
Time Format h:mm:ss tt
Scheduler
12/28/2020 11:35 AM; GoogleUpdateTaskMachineUA
12/28/2020 11:47 AM; MicrosoftEdgeUpdateTaskMachineUA
12/28/2020 12:15 PM; Adobe Flash Player Updater
12/28/2020 1:35 PM; GoogleUpdateTaskMachineCore
12/28/2020 2:03 PM; CorelUpdateHelperTaskCore
12/28/2020 4:38 PM; OneDrive Standalone Update Task-S-1-5-21-
4010976799-1677189689-3756932385-2584
12/29/2020 12:30 AM; OneDrive Standalone Update Task-S-1-5-21-
1856111450-2561432512-1975335453-1001
12/29/2020 8:17 AM; MicrosoftEdgeUpdateTaskMachineCore
12/29/2020 8:48 AM; OneDrive Standalone Update Task-S-1-5-21-
4010976799-1677189689-3756932385-2596
12/29/2020 1:53 PM; OneDrive Standalone Update Task-S-1-5-21-
4010976799-1677189689-3756932385-2329
1/2/2021 7:08 AM; Adobe Flash Player PPAPI Notifier
1/2/2021 7:20 AM; Adobe Flash Player NPAPI Notifier
Microsoft Office 15 Sync Maintenance for CMED-s.chhinhy
CCCONDT088.CMED.LOCAL
RtHDVBg_PushButton
Hotfixes
Installed
12/17/2020 2020-11 Cumulative Update Preview
for .NET Framework 3.5 and 4.8 for Windows 10 Version 1909 for x64 (KB4586878)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
12/9/2020 2020-12 Cumulative Update for
Windows 10 Version 1909 for x64-based Systems (KB4592449)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
11/21/2020 2020-10 Update for Windows 10
Version 1909 for x64-based Systems (KB4023057)
A security issue has been identified in a
Microsoft software
product that could affect your system.
You can help protect your
system by installing this update from
Microsoft. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article. After you install
this update, you may have to restart your
system.
11/12/2020 Windows Malicious Software Removal
Tool x64 - v5.84 (KB890830)
After the download, this tool runs one
time to check your computer
for infection by specific, prevalent
malicious software (including
Blaster, Sasser, and Mydoom) and helps
remove any infection that
is found. If an infection is found, the
tool will display a status
report the next time that you start your
computer. A new version
of the tool will be offered every month.
If you want to manually
run the tool on your computer, you can
download a copy from the
Microsoft Download Center, or you can run
an online version from
microsoft.com. This tool is not a
replacement for an antivirus
product. To help protect your computer,
you should use an antivirus
product.
11/12/2020 2020-11 Cumulative Update for .NET
Framework 3.5 and 4.8 for Windows 10 Version 1909 for x64 (KB4580980)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
11/12/2020 2020-11 Cumulative Update for
Windows 10 Version 1909 for x64-based Systems (KB4586786)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
11/5/2020 Intel - SoftwareComponent -
1.38.2020.805
Intel SoftwareComponent driver update
released in August 2020
11/5/2020 Intel - SoftwareComponent -
1.61.251.0
Intel SoftwareComponent driver update
released in April 2020
11/5/2020 Intel - System - 2013.14.0.1529
Intel System driver update released in
March 2020
10/20/2020 2020-10 Cumulative Update for .NET
Framework 3.5 and 4.8 for Windows 10 Version 1909 for x64 (KB4578974)
A security issue has been identified in a
Microsoft software
product that could affect your system.
You can help protect your
system by installing this update from
Microsoft. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article. After you install
this update, you may have to restart your
system.
10/20/2020 2020-10 Security Update for Adobe
Flash Player for Windows 10 Version 1909 for x64-based Systems (KB4580325)
A security issue has been identified in a
Microsoft software
product that could affect your system.
You can help protect your
system by installing this update from
Microsoft. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article. After you install
this update, you may have to restart your
system.
10/20/2020 2020-10 Cumulative Update for
Windows 10 Version 1909 for x64-based Systems (KB4577671)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
9/30/2020 2020-09 Update for Windows 10
Version 1909 for x64-based Systems (KB4023057)
A security issue has been identified in a
Microsoft software
product that could affect your system.
You can help protect your
system by installing this update from
Microsoft. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article. After you install
this update, you may have to restart your
system.
9/9/2020 Windows Malicious Software Removal
Tool x64 - v5.83 (KB890830)
After the download, this tool runs one
time to check your computer
for infection by specific, prevalent
malicious software (including
Blaster, Sasser, and Mydoom) and helps
remove any infection that
is found. If an infection is found, the
tool will display a status
report the next time that you start your
computer. A new version
of the tool will be offered every month.
If you want to manually
run the tool on your computer, you can
download a copy from the
Microsoft Download Center, or you can run
an online version from
microsoft.com. This tool is not a
replacement for an antivirus
product. To help protect your computer,
you should use an antivirus
product.
9/9/2020 2020-09 Cumulative Update for .NET
Framework 3.5 and 4.8 for Windows 10 Version 1909 for x64 (KB4576484)
A security issue has been identified in a
Microsoft software
product that could affect your system.
You can help protect your
system by installing this update from
Microsoft. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article. After you install
this update, you may have to restart your
system.
9/9/2020 2020-09 Cumulative Update for Windows
10 Version 1909 for x64-based Systems (KB4574727)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
9/2/2020 2020-08 Microsoft Edge Update for
Windows 10 Version 1909 for x64-based Systems (KB4576754)
This update provides the latest feature
and quality updates to
Microsoft Edge.
8/13/2020 2020-08 Cumulative Update for .NET
Framework 3.5 and 4.8 for Windows 10 Version 1909 for x64 (KB4569751)
A security issue has been identified in a
Microsoft software
product that could affect your system.
You can help protect your
system by installing this update from
Microsoft. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article. After you install
this update, you may have to restart your
system.
8/13/2020 2020-08 Cumulative Update for
Windows 10 Version 1909 for x64-based Systems (KB4565351)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
8/3/2020 Apple, Inc. - USBDevice - 5/7/2018
12:00:00 AM - 423.36
Apple, Inc. USBDevice driver update
released in May 2018
7/15/2020 2020-07 Cumulative Update for .NET
Framework 3.5 and 4.8 for Windows 10 Version 1909 for x64 (KB4565633)
A security issue has been identified in a
Microsoft software
product that could affect your system.
You can help protect your
system by installing this update from
Microsoft. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article. After you install
this update, you may have to restart your
system.
7/15/2020 2020-07 Cumulative Update for
Windows 10 Version 1909 for x64-based Systems (KB4565483)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
6/25/2020 HP - Printer - 4/22/2009 12:00:00 AM
- 10.0.17119.1
HP Printer driver update released in
April 2009
6/11/2020 2020-06 Security Update for Adobe
Flash Player for Windows 10 Version 1909 for x64-based Systems (KB4561600)
A security issue has been identified in a
Microsoft software
product that could affect your system.
You can help protect your
system by installing this update from
Microsoft. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article. After you install
this update, you may have to restart your
system.
6/11/2020 2020-06 Cumulative Update for
Windows 10 Version 1909 for x64-based Systems (KB4560960)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
5/13/2020 2020-05 Cumulative Update for .NET
Framework 3.5 and 4.8 for Windows 10 Version 1909 for x64 (KB4552931)
A security issue has been identified in a
Microsoft software
product that could affect your system.
You can help protect your
system by installing this update from
Microsoft. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article. After you install
this update, you may have to restart your
system.
5/13/2020 Windows Malicious Software Removal
Tool x64 - v5.82 (KB890830)
After the download, this tool runs one
time to check your computer
for infection by specific, prevalent
malicious software (including
Blaster, Sasser, and Mydoom) and helps
remove any infection that
is found. If an infection is found, the
tool will display a status
report the next time that you start your
computer. A new version
of the tool will be offered every month.
If you want to manually
run the tool on your computer, you can
download a copy from the
Microsoft Download Center, or you can run
an online version from
microsoft.com. This tool is not a
replacement for an antivirus
product. To help protect your computer,
you should use an antivirus
product.
5/13/2020 2020-05 Cumulative Update for
Windows 10 Version 1909 for x64-based Systems (KB4556799)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
4/24/2020 2020-04 Cumulative Update for
Windows 10 Version 1909 for x64-based Systems (KB4549951)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
4/20/2020 Update for Windows Defender
Antivirus antimalware platform - KB4052623 (Version 4.18.2003.8)
This package will update Windows Defender
Antivirus antimalware
platform�s components on the user
machine.
4/20/2020 Intel driver update for Intel(R)
Ethernet Connection (2) I219-LM
This driver was provided by Intel for
support of Intel Ethernet
Connection (2) I219-LM
4/20/2020 Windows Malicious Software Removal
Tool x64 - March 2020 (KB890830)
After the download, this tool runs one
time to check your computer
for infection by specific, prevalent
malicious software (including
Blaster, Sasser, and Mydoom) and helps
remove any infection that
is found. If an infection is found, the
tool will display a status
report the next time that you start your
computer. A new version
of the tool will be offered every month.
If you want to manually
run the tool on your computer, you can
download a copy from the
Microsoft Download Center, or you can run
an online version from
microsoft.com. This tool is not a
replacement for an antivirus
product. To help protect your computer,
you should use an antivirus
product.
4/20/2020 2020-02 Cumulative Update for .NET
Framework 3.5 and 4.8 for Windows 10 Version 1909 for x64 (KB4537572)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
4/20/2020 2020-02 Security Update for Adobe
Flash Player for Windows 10 Version 1909 for x64-based Systems (KB4537759)
A security issue has been identified in a
Microsoft software
product that could affect your system.
You can help protect your
system by installing this update from
Microsoft. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article. After you install
this update, you may have to restart your
system.
4/20/2020 2020-04 Cumulative Update for
Windows 10 Version 1909 for x64-based Systems (KB4549951)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
4/20/2020 Security Intelligence Update for
Windows Defender Antivirus - KB2267602 (Version 1.313.1920.0)
Install this update to revise the files
that are used to detect
viruses, spyware, and other potentially
unwanted software. Once
you have installed this item, it cannot
be removed.
4/20/2020 Intel - System - 1/21/2019 12:00:00
AM - 1904.12.0.1208
Intel System driver update released in
January 2019
4/20/2020 Intel - Other hardware - Intel(R)
100 Series/C230 Series Chipset Family Thermal subsystem - A131
Intel Other hardware software update
released in January, 1970
4/20/2020 Intel - Other hardware - Intel(R)
100 Series/C230 Series Chipset Family SMBus - A123
Intel Other hardware software update
released in October, 2016
4/20/2020 NVIDIA - Display - 3/16/2018
12:00:00 AM - 23.21.13.9125
NVIDIA Display driver update released in
March 2018
4/20/2020 Realtek Semiconductor Corp. - MEDIA
- 6/15/2017 12:00:00 AM - 6.0.1.6122
Realtek Semiconductor Corp. MEDIA driver
update released in June
2017
Not Installed
11/18/2020 2020-10 Cumulative Update Preview
for .NET Framework 3.5 and 4.8 for Windows 10 Version 1909 for x64 (KB4580980)
Installation Status Failed
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
10/20/2020 9WZDNCRFJ3P2-MICROSOFT.ZUNEVIDEO
Installation Status Failed
9WZDNCRFJ3P2-1152921505691905346
10/20/2020 9NBLGGH3FRZM-
Microsoft.VCLibs.140.00
Installation Status Failed
9NBLGGH3FRZM-1152921505691793235
10/20/2020 9WZDNCRD29V9-
MICROSOFT.MICROSOFTOFFICEHUB
Installation Status Failed
9WZDNCRD29V9-1152921505691308870
System Folders
Application Data C:\ProgramData
Cookies C:\Users\Administrator\AppData\Local\Microsoft\
Windows\INetCookies
Desktop C:\Users\Administrator\Desktop
Documents C:\Users\Public\Documents
Fonts C:\Windows\Fonts
Global Favorites C:\Users\Administrator\Favorites
Internet History C:\Users\Administrator\AppData\Local\Microsoft\
Windows\History
Local Application Data C:\Users\Administrator\AppData\Local
Music C:\Users\Public\Music
Path for burning CD C:\Users\Administrator\AppData\Local\
Microsoft\Windows\Burn\Burn
Physical Desktop C:\Users\Administrator\Desktop
Pictures C:\Users\Public\Pictures
Program Files C:\Program Files
Public Desktop C:\Users\Public\Desktop
Start Menu C:\ProgramData\Microsoft\Windows\Start Menu
Start Menu Programs C:\ProgramData\Microsoft\Windows\Start
Menu\Programs
Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\
Startup
Templates C:\ProgramData\Microsoft\Windows\Templates
Temporary Internet Files C:\Users\Administrator\AppData\
Local\Microsoft\Windows\INetCache
User Favorites C:\Users\Administrator\Favorites
Videos C:\Users\Public\Videos
Windows Directory C:\Windows
Windows/System C:\Windows\system32
Process List
acrotray.exe
Process ID 76876
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Adobe\Acrobat 11.0\
Acrobat\acrotray.exe
Memory Usage 9.08 MB
Peak Memory Usage 9.29 MB
AcWebBrowser.exe
Process ID 52996
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Autodesk\Autodesk
Desktop App\AcWebBrowser\AcWebBrowser.exe
Memory Usage 36 MB
Peak Memory Usage 42 MB
AcWebBrowser.exe
Process ID 6760
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Autodesk\Autodesk
Desktop App\AcWebBrowser\AcWebBrowser.exe
Memory Usage 97 MB
Peak Memory Usage 122 MB
AcWebBrowser.exe
Process ID 39112
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Autodesk\Autodesk
Desktop App\AcWebBrowser\AcWebBrowser.exe
Memory Usage 35 MB
Peak Memory Usage 36 MB
AdAppMgrSvc.exe
Process ID 12488
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Autodesk\Autodesk
Desktop App\AdAppMgrSvc.exe
Memory Usage 20 MB
Peak Memory Usage 25 MB
AdobeIPCBroker.exe
Process ID 33528
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Common Files\Adobe\Adobe
Desktop Common\IPCBox\AdobeIPCBroker.exe
Memory Usage 10 MB
Peak Memory Usage 10 MB
AnyDesk.exe
Process ID 37160
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\AnyDesk\AnyDesk.exe
Memory Usage 30 MB
Peak Memory Usage 30 MB
AnyDesk.exe
Process ID 61940
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\AnyDesk\AnyDesk.exe
Memory Usage 91 MB
Peak Memory Usage 206 MB
AnyDesk.exe
Process ID 12468
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\AnyDesk\AnyDesk.exe
Memory Usage 27 MB
Peak Memory Usage 29 MB
ApplicationFrameHost.exe
Process ID 2720
User s.chhinhy
Domain CMED
Path C:\Windows\System32\ApplicationFrameHost.exe
Memory Usage 29 MB
Peak Memory Usage 31 MB
armsvc.exe
Process ID 12452
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Common Files\Adobe\ARM\
1.0\armsvc.exe
Memory Usage 2.29 MB
Peak Memory Usage 7.26 MB
audiodg.exe
Process ID 69020
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\audiodg.exe
Memory Usage 23 MB
Peak Memory Usage 33 MB
AutodeskDesktopApp.exe
Process ID 45028
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Autodesk\Autodesk
Desktop App\AutodeskDesktopApp.exe
Memory Usage 42 MB
Peak Memory Usage 43 MB
ccSvcHst.exe
Process ID 18476
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Symantec\Symantec
Endpoint Protection\14.2.3335.1000.105\Bin\ccSvcHst.exe
Memory Usage 6.48 MB
Peak Memory Usage 22 MB
ccSvcHst.exe
Process ID 13476
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Symantec\Symantec
Endpoint Protection\14.2.3335.1000.105\Bin\ccSvcHst.exe
Memory Usage 200 MB
Peak Memory Usage 334 MB
CCXProcess.exe
Process ID 41744
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Adobe\Adobe Creative
Cloud Experience\CCXProcess.exe
Memory Usage 3.27 MB
Peak Memory Usage 3.41 MB
chrome.exe
Process ID 35176
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Google\Chrome\
Application\chrome.exe
Memory Usage 15 MB
Peak Memory Usage 20 MB
chrome.exe
Process ID 50248
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Google\Chrome\
Application\chrome.exe
Memory Usage 17 MB
Peak Memory Usage 17 MB
chrome.exe
Process ID 55908
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Google\Chrome\
Application\chrome.exe
Memory Usage 201 MB
Peak Memory Usage 239 MB
chrome.exe
Process ID 78372
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Google\Chrome\
Application\chrome.exe
Memory Usage 6.89 MB
Peak Memory Usage 7.00 MB
chrome.exe
Process ID 46824
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Google\Chrome\
Application\chrome.exe
Memory Usage 76 MB
Peak Memory Usage 93 MB
chrome.exe
Process ID 11808
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Google\Chrome\
Application\chrome.exe
Memory Usage 123 MB
Peak Memory Usage 159 MB
chrome.exe
Process ID 48928
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Google\Chrome\
Application\chrome.exe
Memory Usage 21 MB
Peak Memory Usage 21 MB
chrome.exe
Process ID 67908
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Google\Chrome\
Application\chrome.exe
Memory Usage 99 MB
Peak Memory Usage 238 MB
chrome.exe
Process ID 63868
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Google\Chrome\
Application\chrome.exe
Memory Usage 30 MB
Peak Memory Usage 34 MB
chrome.exe
Process ID 31868
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Google\Chrome\
Application\chrome.exe
Memory Usage 98 MB
Peak Memory Usage 128 MB
conhost.exe
Process ID 22056
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\conhost.exe
Memory Usage 7.00 MB
Peak Memory Usage 13 MB
conhost.exe
Process ID 76500
User s.chhinhy
Domain CMED
Path C:\Windows\System32\conhost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
csrss.exe
Process ID 840
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\csrss.exe
Memory Usage 2.86 MB
Peak Memory Usage 5.63 MB
csrss.exe
Process ID 45340
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\csrss.exe
Memory Usage 5.47 MB
Peak Memory Usage 21 MB
ctfmon.exe
Process ID 316
User s.chhinhy
Domain CMED
Path C:\Windows\System32\ctfmon.exe
Memory Usage 17 MB
Peak Memory Usage 17 MB
dllhost.exe
Process ID 66700
User Administrator
Domain CCCONDT088
Path C:\Windows\System32\dllhost.exe
Memory Usage 12 MB
Peak Memory Usage 13 MB
dllhost.exe
Process ID 25400
User s.chhinhy
Domain CMED
Path C:\Windows\System32\dllhost.exe
Memory Usage 13 MB
Peak Memory Usage 14 MB
dllhost.exe
Process ID 37760
User s.chhinhy
Domain CMED
Path C:\Windows\System32\dllhost.exe
Memory Usage 6.97 MB
Peak Memory Usage 6.98 MB
dwm.exe
Process ID 51504
User DWM-7
Domain Window Manager
Path C:\Windows\System32\dwm.exe
Memory Usage 73 MB
Peak Memory Usage 92 MB
explorer.exe
Process ID 26796
User s.chhinhy
Domain CMED
Path C:\Windows\explorer.exe
Memory Usage 209 MB
Peak Memory Usage 238 MB
FCDBLog.exe
Process ID 25740
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Fortinet\FortiClient\
FCDBLog.exe
Memory Usage 9.98 MB
Peak Memory Usage 18 MB
FNPLicensingService64.exe
Process ID 12536
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Common Files\Macrovision
Shared\FlexNet Publisher\FNPLicensingService64.exe
Memory Usage 6.87 MB
Peak Memory Usage 11 MB
fontdrvhost.exe
Process ID 1920
User UMFD-0
Domain Font Driver Host
Path C:\Windows\System32\fontdrvhost.exe
Memory Usage 6.66 MB
Peak Memory Usage 35 MB
fontdrvhost.exe
Process ID 39036
User UMFD-7
Domain Font Driver Host
Path C:\Windows\System32\fontdrvhost.exe
Memory Usage 17 MB
Peak Memory Usage 26 MB
FortiSettings.exe
Process ID 26944
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Fortinet\FortiClient\
FortiSettings.exe
Memory Usage 2.82 MB
Peak Memory Usage 8.87 MB
FortiSSLVPNdaemon.exe
Process ID 26884
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Fortinet\FortiClient\
FortiSSLVPNdaemon.exe
Memory Usage 3.41 MB
Peak Memory Usage 10 MB
FortiTray.exe
Process ID 39340
User s.chhinhy
Domain CMED
Path C:\Program Files\Fortinet\FortiClient\
FortiTray.exe
Memory Usage 19 MB
Peak Memory Usage 24 MB
jhi_service.exe
Process ID 12840
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
Memory Usage 1.84 MB
Peak Memory Usage 6.57 MB
LockApp.exe
Process ID 69236
User s.chhinhy
Domain CMED
Path C:\Windows\SystemApps\
Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
Memory Usage 49 MB
Peak Memory Usage 50 MB
lsass.exe
Process ID 1372
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\lsass.exe
Memory Usage 18 MB
Peak Memory Usage 20 MB
Memory Compression
Process ID 7696
User SYSTEM
Domain NT AUTHORITY
Memory Usage 91 MB
Peak Memory Usage 124 MB
Microsoft.Photos.exe
Process ID 48004
User s.chhinhy
Domain CMED
Path C:\Program Files\WindowsApps\
Microsoft.Windows.Photos_2020.20110.11001.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
Memory Usage 35 MB
Peak Memory Usage 101 MB
msedge.exe
Process ID 40020
User Administrator
Domain CCCONDT088
Path C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe
Memory Usage 34 MB
Peak Memory Usage 34 MB
msedge.exe
Process ID 27600
User Administrator
Domain CCCONDT088
Path C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe
Memory Usage 86 MB
Peak Memory Usage 89 MB
msedge.exe
Process ID 79504
User Administrator
Domain CCCONDT088
Path C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe
Memory Usage 7.84 MB
Peak Memory Usage 7.84 MB
msedge.exe
Process ID 64824
User Administrator
Domain CCCONDT088
Path C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe
Memory Usage 53 MB
Peak Memory Usage 55 MB
msedge.exe
Process ID 42960
User Administrator
Domain CCCONDT088
Path C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe
Memory Usage 24 MB
Peak Memory Usage 24 MB
msedge.exe
Process ID 37388
User Administrator
Domain CCCONDT088
Path C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe
Memory Usage 23 MB
Peak Memory Usage 23 MB
node.exe
Process ID 46436
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Adobe\Adobe Creative
Cloud Experience\libs\node.exe
Memory Usage 60 MB
Peak Memory Usage 61 MB
NVDisplay.Container.exe
Process ID 5636
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\NVIDIA Corporation\
Display.NvContainer\NVDisplay.Container.exe
Memory Usage 7.43 MB
Peak Memory Usage 12 MB
NVDisplay.Container.exe
Process ID 62736
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\NVIDIA Corporation\
Display.NvContainer\NVDisplay.Container.exe
Memory Usage 25 MB
Peak Memory Usage 41 MB
nvwmi64.exe
Process ID 40380
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\nvwmi64.exe
Memory Usage 15 MB
Peak Memory Usage 37 MB
nvwmi64.exe
Process ID 5672
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\nvwmi64.exe
Memory Usage 3.38 MB
Peak Memory Usage 7.73 MB
OneDrive.exe
Process ID 59984
User s.chhinhy
Domain CMED
Path C:\Users\s.chhinhy\AppData\Local\Microsoft\
OneDrive\OneDrive.exe
Memory Usage 72 MB
Peak Memory Usage 80 MB
OUTLOOK.EXE
Process ID 1140
User s.chhinhy
Domain CMED
Path C:\Program Files\Microsoft Office\Office15\
OUTLOOK.EXE
Memory Usage 133 MB
Peak Memory Usage 170 MB
PsiService_2.exe
Process ID 13364
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Common Files\Protexis\
License Service\PsiService_2.exe
Memory Usage 1.79 MB
Peak Memory Usage 6.13 MB
RAVBg64.exe
Process ID 47868
User s.chhinhy
Domain CMED
Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
Memory Usage 19 MB
Peak Memory Usage 22 MB
RAVBg64.exe
Process ID 60904
User s.chhinhy
Domain CMED
Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
Memory Usage 3.39 MB
Peak Memory Usage 13 MB
RAVBg64.exe
Process ID 17656
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
Memory Usage 14 MB
Peak Memory Usage 15 MB
RAVBg64.exe
Process ID 45776
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
Memory Usage 14 MB
Peak Memory Usage 15 MB
register-service.exe
Process ID 14264
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Chaos Group\V-Ray\Swarm 1.4\
register-service.exe
Memory Usage 2.60 MB
Peak Memory Usage 8.73 MB
Registry
Process ID 104
User SYSTEM
Domain NT AUTHORITY
Memory Usage 54 MB
Peak Memory Usage 191 MB
RevitAccelerator.exe
Process ID 72636
User s.chhinhy
Domain CMED
Path C:\Program Files\Autodesk\Personal Accelerator
for Revit\RevitAccelerator.exe
Memory Usage 56 MB
Peak Memory Usage 57 MB
RtkAudioService64.exe
Process ID 9384
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Realtek\Audio\HDA\
RtkAudioService64.exe
Memory Usage 3.93 MB
Peak Memory Usage 8.56 MB
RtkNGUI64.exe
Process ID 40620
User s.chhinhy
Domain CMED
Path C:\Program Files\Realtek\Audio\HDA\
RtkNGUI64.exe
Memory Usage 47 MB
Peak Memory Usage 47 MB
runSW.exe
Process ID 13388
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\runSW.exe
Memory Usage 3.73 MB
Peak Memory Usage 7.13 MB
RuntimeBroker.exe
Process ID 30708
User s.chhinhy
Domain CMED
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 8.11 MB
Peak Memory Usage 9.73 MB
RuntimeBroker.exe
Process ID 68720
User s.chhinhy
Domain CMED
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 52 MB
Peak Memory Usage 56 MB
RuntimeBroker.exe
Process ID 27896
User s.chhinhy
Domain CMED
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 20 MB
Peak Memory Usage 29 MB
RuntimeBroker.exe
Process ID 53788
User s.chhinhy
Domain CMED
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 21 MB
Peak Memory Usage 33 MB
RuntimeBroker.exe
Process ID 69500
User s.chhinhy
Domain CMED
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 7.82 MB
Peak Memory Usage 7.87 MB
RuntimeBroker.exe
Process ID 55716
User s.chhinhy
Domain CMED
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 26 MB
Peak Memory Usage 29 MB
RuntimeBroker.exe
Process ID 8700
User s.chhinhy
Domain CMED
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 29 MB
Peak Memory Usage 33 MB
RuntimeBroker.exe
Process ID 48416
User s.chhinhy
Domain CMED
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 30 MB
Peak Memory Usage 37 MB
RuntimeBroker.exe
Process ID 43208
User s.chhinhy
Domain CMED
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 17 MB
Peak Memory Usage 18 MB
RuntimeBroker.exe
Process ID 18680
User s.chhinhy
Domain CMED
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 26 MB
Peak Memory Usage 27 MB
scheduler.exe
Process ID 11456
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Fortinet\FortiClient\
scheduler.exe
Memory Usage 7.17 MB
Peak Memory Usage 20 MB
SearchFilterHost.exe
Process ID 63176
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SearchFilterHost.exe
Memory Usage 20 MB
Peak Memory Usage 20 MB
SearchIndexer.exe
Process ID 37500
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SearchIndexer.exe
Memory Usage 48 MB
Peak Memory Usage 50 MB
SearchProtocolHost.exe
Process ID 33796
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SearchProtocolHost.exe
Memory Usage 22 MB
Peak Memory Usage 22 MB
SearchUI.exe
Process ID 64892
User s.chhinhy
Domain CMED
Path C:\Windows\SystemApps\
Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
Memory Usage 193 MB
Peak Memory Usage 233 MB
SecurityHealthService.exe
Process ID 41268
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SecurityHealthService.exe
Memory Usage 11 MB
Peak Memory Usage 15 MB
SecurityHealthSystray.exe
Process ID 39116
User s.chhinhy
Domain CMED
Path C:\Windows\System32\SecurityHealthSystray.exe
Memory Usage 9.13 MB
Peak Memory Usage 9.13 MB
sepWscSvc64.exe
Process ID 15704
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Symantec\Symantec
Endpoint Protection\14.2.3335.1000.105\Bin64\sepWscSvc64.exe
Memory Usage 3.70 MB
Peak Memory Usage 12 MB
services.exe
Process ID 1344
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\services.exe
Memory Usage 11 MB
Peak Memory Usage 13 MB
SgrmBroker.exe
Process ID 60208
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SgrmBroker.exe
Memory Usage 4.59 MB
Peak Memory Usage 7.02 MB
ShellExperienceHost.exe
Process ID 44428
User s.chhinhy
Domain CMED
Path C:\Windows\SystemApps\
ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
Memory Usage 56 MB
Peak Memory Usage 58 MB
sihost.exe
Process ID 71636
User s.chhinhy
Domain CMED
Path C:\Windows\System32\sihost.exe
Memory Usage 27 MB
Peak Memory Usage 27 MB
SISIDSService.exe
Process ID 15096
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Symantec\Symantec
Endpoint Protection\14.2.3335.1000.105\SAEP\IDS\bin\SISIDSService.exe
Memory Usage 8.64 MB
Peak Memory Usage 16 MB
SISIPSService.exe
Process ID 13792
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Symantec\Symantec
Endpoint Protection\14.2.3335.1000.105\SAEP\IPS\bin\SISIPSService.exe
Memory Usage 4.03 MB
Peak Memory Usage 10 MB
sisipsutil.exe
Process ID 13868
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Symantec\Symantec
Endpoint Protection\14.2.3335.1000.105\SAEP\IPS\bin\sisipsutil.exe
Memory Usage 3.02 MB
Peak Memory Usage 8.66 MB
Skype.exe
Process ID 38948
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Microsoft\Skype for
Desktop\Skype.exe
Memory Usage 85 MB
Peak Memory Usage 88 MB
Skype.exe
Process ID 45724
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Microsoft\Skype for
Desktop\Skype.exe
Memory Usage 15 MB
Peak Memory Usage 15 MB
Skype.exe
Process ID 36752
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Microsoft\Skype for
Desktop\Skype.exe
Memory Usage 83 MB
Peak Memory Usage 116 MB
Skype.exe
Process ID 64420
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Microsoft\Skype for
Desktop\Skype.exe
Memory Usage 27 MB
Peak Memory Usage 29 MB
Skype.exe
Process ID 70236
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Microsoft\Skype for
Desktop\Skype.exe
Memory Usage 197 MB
Peak Memory Usage 241 MB
Skype.exe
Process ID 53732
User s.chhinhy
Domain CMED
Path C:\Program Files (x86)\Microsoft\Skype for
Desktop\Skype.exe
Memory Usage 20 MB
Peak Memory Usage 20 MB
smartscreen.exe
Process ID 9620
User s.chhinhy
Domain CMED
Path C:\Windows\System32\smartscreen.exe
Memory Usage 23 MB
Peak Memory Usage 23 MB
smss.exe
Process ID 428
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\smss.exe
Memory Usage 664 KB
Peak Memory Usage 1.23 MB
Speccy64.exe
Process ID 54932
User Administrator
Domain CCCONDT088
Path C:\Program Files\Speccy\Speccy64.exe
Memory Usage 34 MB
Peak Memory Usage 34 MB
spoolsv.exe
Process ID 12092
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\spoolsv.exe
Memory Usage 23 MB
Peak Memory Usage 26 MB
sqlwriter.exe
Process ID 13940
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Microsoft SQL Server\90\
Shared\sqlwriter.exe
Memory Usage 2.82 MB
Peak Memory Usage 8.16 MB
StartMenuExperienceHost.exe
Process ID 65600
User s.chhinhy
Domain CMED
Path C:\Windows\SystemApps\
Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
Memory Usage 68 MB
Peak Memory Usage 75 MB
svchost.exe
Process ID 44232
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.31 MB
Peak Memory Usage 7.41 MB
svchost.exe
Process ID 1824
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 1.50 MB
Peak Memory Usage 4.42 MB
svchost.exe
Process ID 2004
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 29 MB
Peak Memory Usage 32 MB
svchost.exe
Process ID 67096
User s.chhinhy
Domain CMED
Path C:\Windows\System32\svchost.exe
Memory Usage 19 MB
Peak Memory Usage 20 MB
svchost.exe
Process ID 37632
User s.chhinhy
Domain CMED
Path C:\Windows\System32\svchost.exe
Memory Usage 35 MB
Peak Memory Usage 37 MB
svchost.exe
Process ID 2264
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 18 MB
Peak Memory Usage 18 MB
svchost.exe
Process ID 2428
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.34 MB
Peak Memory Usage 9.31 MB
svchost.exe
Process ID 3124
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.32 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 30496
User s.chhinhy
Domain CMED
Path C:\Windows\System32\svchost.exe
Memory Usage 23 MB
Peak Memory Usage 23 MB
svchost.exe
Process ID 3284
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.98 MB
Peak Memory Usage 8.62 MB
svchost.exe
Process ID 3300
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.13 MB
Peak Memory Usage 7.97 MB
svchost.exe
Process ID 3400
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.62 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 3736
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 16 MB
svchost.exe
Process ID 3796
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.07 MB
Peak Memory Usage 9.79 MB
svchost.exe
Process ID 3988
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 4092
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.74 MB
Peak Memory Usage 6.44 MB
svchost.exe
Process ID 4140
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.50 MB
Peak Memory Usage 8.20 MB
svchost.exe
Process ID 4452
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 15 MB
Peak Memory Usage 20 MB
svchost.exe
Process ID 5288
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.12 MB
Peak Memory Usage 10 MB
svchost.exe
Process ID 5352
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 16 MB
Peak Memory Usage 33 MB
svchost.exe
Process ID 5512
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.70 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 5792
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.51 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 6540
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.51 MB
Peak Memory Usage 9.07 MB
svchost.exe
Process ID 6956
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.75 MB
Peak Memory Usage 8.21 MB
svchost.exe
Process ID 6964
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.68 MB
Peak Memory Usage 18 MB
svchost.exe
Process ID 6972
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.16 MB
Peak Memory Usage 6.23 MB
svchost.exe
Process ID 7472
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.20 MB
Peak Memory Usage 7.93 MB
svchost.exe
Process ID 7688
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 18 MB
Peak Memory Usage 20 MB
svchost.exe
Process ID 7832
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.84 MB
Peak Memory Usage 8.50 MB
svchost.exe
Process ID 8064
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.98 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 7668
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.49 MB
Peak Memory Usage 8.20 MB
svchost.exe
Process ID 8196
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.09 MB
Peak Memory Usage 22 MB
svchost.exe
Process ID 9100
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.50 MB
Peak Memory Usage 14 MB
svchost.exe
Process ID 9628
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 17 MB
Peak Memory Usage 182 MB
svchost.exe
Process ID 10508
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.82 MB
Peak Memory Usage 6.97 MB
svchost.exe
Process ID 10516
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.37 MB
Peak Memory Usage 10 MB
svchost.exe
Process ID 10928
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.71 MB
Peak Memory Usage 16 MB
svchost.exe
Process ID 11248
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.37 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 11844
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.32 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 20424
User s.chhinhy
Domain CMED
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 12240
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.18 MB
Peak Memory Usage 8.86 MB
svchost.exe
Process ID 12476
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 10 MB
Peak Memory Usage 15 MB
svchost.exe
Process ID 12500
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 28 MB
Peak Memory Usage 50 MB
svchost.exe
Process ID 12508
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 41 MB
Peak Memory Usage 102 MB
svchost.exe
Process ID 12548
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 3.62 MB
Peak Memory Usage 8.55 MB
svchost.exe
Process ID 13376
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.45 MB
Peak Memory Usage 9.38 MB
svchost.exe
Process ID 13396
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.20 MB
Peak Memory Usage 7.11 MB
svchost.exe
Process ID 13804
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.03 MB
Peak Memory Usage 8.66 MB
svchost.exe
Process ID 13900
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 16 MB
Peak Memory Usage 83 MB
svchost.exe
Process ID 14040
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.85 MB
Peak Memory Usage 6.05 MB
svchost.exe
Process ID 14112
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 14 MB
Peak Memory Usage 21 MB
svchost.exe
Process ID 14196
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 3.68 MB
Peak Memory Usage 5.94 MB
svchost.exe
Process ID 14208
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.37 MB
Peak Memory Usage 7.71 MB
svchost.exe
Process ID 17984
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.48 MB
Peak Memory Usage 6.25 MB
svchost.exe
Process ID 17520
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.64 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 20576
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.66 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 25264
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.06 MB
Peak Memory Usage 16 MB
svchost.exe
Process ID 25444
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 3.85 MB
Peak Memory Usage 7.66 MB
svchost.exe
Process ID 28616
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.92 MB
Peak Memory Usage 8.97 MB
svchost.exe
Process ID 30320
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 16 MB
Peak Memory Usage 21 MB
svchost.exe
Process ID 62232
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.31 MB
Peak Memory Usage 6.33 MB
svchost.exe
Process ID 49988
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 16 MB
Peak Memory Usage 17 MB
svchost.exe
Process ID 31400
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 3.98 MB
Peak Memory Usage 7.93 MB
svchost.exe
Process ID 32176
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 16 MB
svchost.exe
Process ID 57940
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.66 MB
Peak Memory Usage 9.79 MB
svchost.exe
Process ID 38348
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 17 MB
svchost.exe
Process ID 40084
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.42 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 46964
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.14 MB
Peak Memory Usage 8.18 MB
svchost.exe
Process ID 54776
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.09 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 56916
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 19 MB
Peak Memory Usage 22 MB
svchost.exe
Process ID 53348
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.07 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 15696
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.06 MB
Peak Memory Usage 7.88 MB
svchost.exe
Process ID 35392
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 39 MB
svchost.exe
Process ID 12460
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 3.11 MB
Peak Memory Usage 6.36 MB
svchost.exe
Process ID 6628
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.24 MB
Peak Memory Usage 10 MB
svchost.exe
Process ID 79440
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 15 MB
Peak Memory Usage 15 MB
svchost.exe
Process ID 54636
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.16 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 39284
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.16 MB
Peak Memory Usage 10 MB
svchost.exe
Process ID 77712
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 15 MB
Peak Memory Usage 15 MB
swrm.exe
Process ID 22012
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Chaos Group\V-Ray\Swarm 1.4\
swrm.exe
Memory Usage 54 MB
Peak Memory Usage 93 MB
SwUSB.exe
Process ID 46412
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\SwUSB.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
System
Process ID 4
Memory Usage 2.68 MB
Peak Memory Usage 9.63 MB
System Idle Process
Process ID 0
SystemSettings.exe
Process ID 73316
User s.chhinhy
Domain CMED
Path C:\Windows\ImmersiveControlPanel\
SystemSettings.exe
Memory Usage 688 KB
Peak Memory Usage 96 MB
taskhostw.exe
Process ID 29792
User s.chhinhy
Domain CMED
Path C:\Windows\System32\taskhostw.exe
Memory Usage 19 MB
Peak Memory Usage 20 MB
Telegram.exe
Process ID 49376
User s.chhinhy
Domain CMED
Path C:\Users\s.chhinhy\AppData\Roaming\Telegram
Desktop\Telegram.exe
Memory Usage 199 MB
Peak Memory Usage 222 MB
uhssvc.exe
Process ID 60328
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Microsoft Update Health Tools\
uhssvc.exe
Memory Usage 3.31 MB
Peak Memory Usage 8.39 MB
unsecapp.exe
Process ID 76568
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\wbem\unsecapp.exe
Memory Usage 7.57 MB
Peak Memory Usage 7.58 MB
unsecapp.exe
Process ID 23404
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\wbem\unsecapp.exe
Memory Usage 2.80 MB
Peak Memory Usage 7.04 MB
Video.UI.exe
Process ID 68796
User s.chhinhy
Domain CMED
Path C:\Program Files\WindowsApps\
Microsoft.ZuneVideo_10.20112.10111.0_x64__8wekyb3d8bbwe\Video.UI.exe
Memory Usage 1.75 MB
Peak Memory Usage 55 MB
vray.exe
Process ID 28464
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\config\systemprofile\
AppData\Roaming\Chaos Group\vray-swarm\work\vray-swarm\V-Ray\c64411b7-796f-41fb-
8616-f2c2a723fa11\bin\vray.exe
Memory Usage 27 MB
Peak Memory Usage 83 MB
vrol.exe
Process ID 48652
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Chaos Group\VRLService\OLS\
vrol.exe
Memory Usage 13 MB
Peak Memory Usage 23 MB
WavesSvc64.exe
Process ID 52804
User s.chhinhy
Domain CMED
Path C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
Memory Usage 6.72 MB
Peak Memory Usage 6.78 MB
WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe
Process ID 45248
User s.chhinhy
Domain CMED
Path C:\Windows\SystemApps\InputApp_cw5n1h2txyewy\
WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe
Memory Usage 46 MB
Peak Memory Usage 47 MB
wininit.exe
Process ID 1008
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\wininit.exe
Memory Usage 3.56 MB
Peak Memory Usage 6.91 MB
winlogon.exe
Process ID 39044
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\winlogon.exe
Memory Usage 9.90 MB
Peak Memory Usage 26 MB
WinStore.App.exe
Process ID 69848
User s.chhinhy
Domain CMED
Path C:\Program Files\WindowsApps\
Microsoft.WindowsStore_12011.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
Memory Usage 2.40 MB
Peak Memory Usage 136 MB
WmiPrvSE.exe
Process ID 65788
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
Memory Usage 9.09 MB
Peak Memory Usage 9.63 MB
WmiPrvSE.exe
Process ID 78812
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\wbem\WmiPrvSE.exe
Memory Usage 25 MB
Peak Memory Usage 26 MB
WmiPrvSE.exe
Process ID 45692
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\wbem\WmiPrvSE.exe
Memory Usage 7.36 MB
Peak Memory Usage 10 MB
YourPhone.exe
Process ID 25100
User s.chhinhy
Domain CMED
Path C:\Program Files\WindowsApps\
Microsoft.YourPhone_1.20112.68.0_x64__8wekyb3d8bbwe\YourPhone.exe
Memory Usage 11 MB
Peak Memory Usage 67 MB
Security Options
Accounts: Administrator account status Enabled
Accounts: Block Microsoft accounts Not Defined
Accounts: Guest account status Disabled
Accounts: Limit local account use of blank passwords to console
logon only Enabled
Accounts: Rename administrator account Administrator
Accounts: Rename guest account Guest
Audit: Audit the access of global system objects Disabled
Audit: Audit the use of Backup and Restore privilege Disabled
Audit: Force audit policy subcategory settings (Windows Vista or
later) to override audit policy category settings Not Defined
Audit: Shut down system immediately if unable to log security
audits Disabled
DCOM: Machine Access Restrictions in Security Descriptor
Definition Language (SDDL) syntax Not Defined
DCOM: Machine Launch Restrictions in Security Descriptor
Definition Language (SDDL) syntax Not Defined
Devices: Allow undock without having to log on Enabled
Devices: Allowed to format and eject removable media Not Defined
Devices: Prevent users from installing printer drivers
Disabled
Devices: Restrict CD-ROM access to locally logged-on user only
Not Defined
Devices: Restrict floppy access to locally logged-on user only
Not Defined
Domain controller: Allow server operators to schedule tasksNot
Defined
Domain controller: Allow vulnerable Netlogon secure channel
connections Not Defined
Domain controller: LDAP server channel binding token requirements
Not Defined
Domain controller: LDAP server signing requirements Not Defined
Domain controller: Refuse machine account password changes Not
Defined
Domain member: Digitally encrypt or sign secure channel data
(always) Enabled
Domain member: Digitally encrypt secure channel data (when
possible) Enabled
Domain member: Digitally sign secure channel data (when possible)
Enabled
Domain member: Disable machine account password changes
Disabled
Domain member: Maximum machine account password age 30 days
Domain member: Require strong (Windows 2000 or later) session key
Enabled
Interactive logon: Display user information when the session is
locked Not Defined
Interactive logon: Do not require CTRL+ALT+DEL Not Defined
Interactive logon: Don't display last signed-in Disabled
Interactive logon: Don't display username at sign-in Not Defined
Interactive logon: Machine account lockout threshold Not Defined
Interactive logon: Machine inactivity limit Not Defined
Interactive logon: Message text for users attempting to log on
Interactive logon: Message title for users attempting to log on
Interactive logon: Number of previous logons to cache (in case
domain controller is not available) 10 logons
Interactive logon: Prompt user to change password before
expiration 5 days
Interactive logon: Require Domain Controller authentication to
unlock workstation Disabled
Interactive logon: Require Windows Hello for Business or smart
card Disabled
Interactive logon: Smart card removal behavior No Action
Microsoft network client: Digitally sign communications (always)
Disabled
Microsoft network client: Digitally sign communications (if
server agrees) Enabled
Microsoft network client: Send unencrypted password to third-
party SMB servers Disabled
Microsoft network server: Amount of idle time required before
suspending session 15 minutes
Microsoft network server: Attempt S4U2Self to obtain claim
information Not Defined
Microsoft network server: Digitally sign communications (always)
Disabled
Microsoft network server: Digitally sign communications (if
client agrees) Disabled
Microsoft network server: Disconnect clients when logon hours
expire Enabled
Microsoft network server: Server SPN target name validation level
Not Defined
Minimum password length audit Not Defined
Network access: Allow anonymous SID/Name translation Disabled
Network access: Do not allow anonymous enumeration of SAM
accounts Enabled
Network access: Do not allow anonymous enumeration of SAM
accounts and shares Disabled
Network access: Do not allow storage of passwords and credentials
for network authentication Disabled
Network access: Let Everyone permissions apply to anonymous users
Disabled
Network access: Named Pipes that can be accessed anonymously
Network access: Remotely accessible registry paths System\
CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server
Applications,Software\Microsoft\Windows NT\CurrentVersion
Network access: Remotely accessible registry paths and sub-paths
System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\
Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\
CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\
CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal
Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\
CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\
Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\
SysmonLog
Network access: Restrict anonymous access to Named Pipes and
Shares Enabled
Network access: Restrict clients allowed to make remote calls to
SAM
Network access: Shares that can be accessed anonymously Not
Defined
Network access: Sharing and security model for local accounts
Classic - local users authenticate as themselves
Network security: Allow Local System to use computer identity for
NTLM Not Defined
Network security: Allow LocalSystem NULL session fallback Not
Defined
Network security: Allow PKU2U authentication requests to this
computer to use online identities.
Not Defined
Network security: Configure encryption types allowed for Kerberos
Not Defined
Network security: Do not store LAN Manager hash value on next
password change Enabled
Network security: Force logoff when logon hours expire
Disabled
Network security: LAN Manager authentication level Not Defined
Network security: LDAP client signing requirements Negotiate
signing
Network security: Minimum session security for NTLM SSP based
(including secure RPC) clients Require 128-bit encryption
Network security: Minimum session security for NTLM SSP based
(including secure RPC) servers Require 128-bit encryption
Network security: Restrict NTLM: Add remote server exceptions for
NTLM authentication Not Defined
Network security: Restrict NTLM: Add server exceptions in this
domain Not Defined
Network security: Restrict NTLM: Audit Incoming NTLM Traffic
Not Defined
Network security: Restrict NTLM: Audit NTLM authentication in
this domain Not Defined
Network security: Restrict NTLM: Incoming NTLM traffic Not
Defined
Network security: Restrict NTLM: NTLM authentication in this
domain Not Defined
Network security: Restrict NTLM: Outgoing NTLM traffic to remote
servers Not Defined
Recovery console: Allow automatic administrative logon
Disabled
Recovery console: Allow floppy copy and access to all drives and
all folders Disabled
Shutdown: Allow system to be shut down without having to log on
Enabled
Shutdown: Clear virtual memory pagefile Disabled
System cryptography: Force strong key protection for user keys
stored on the computer Not Defined
System cryptography: Use FIPS compliant algorithms for
encryption, hashing, and signing Disabled
System objects: Require case insensitivity for non-Windows
subsystems Enabled
System objects: Strengthen default permissions of internal system
objects (e.g. Symbolic Links) Enabled
System settings: Optional subsystems
System settings: Use Certificate Rules on Windows Executables for
Software Restriction Policies Disabled
User Account Control: Admin Approval Mode for the Built-in
Administrator account Not Defined
User Account Control: Allow UIAccess applications to prompt for
elevation without using the secure desktop Disabled
User Account Control: Behavior of the elevation prompt for
administrators in Admin Approval Mode Prompt for consent for non-Windows
binaries
User Account Control: Behavior of the elevation prompt for
standard users Prompt for credentials
User Account Control: Detect application installations and prompt
for elevation Enabled
User Account Control: Only elevate executables that are signed
and validated Disabled
User Account Control: Only elevate UIAccess applications that are
installed in secure locations Enabled
User Account Control: Run all administrators in Admin Approval
Mode Enabled
User Account Control: Switch to the secure desktop when prompting
for elevation Enabled
User Account Control: Virtualize file and registry write failures
to per-user locations Enabled
Device Tree
ACPI x64-based PC
Microsoft ACPI-Compliant System
ACPI Fan
ACPI Fan
ACPI Fan
ACPI Fan
ACPI Fan
ACPI Fixed Feature Button
ACPI Power Button
ACPI Processor Aggregator
ACPI Sleep Button
ACPI Thermal Zone
ACPI Thermal Zone
Intel Power Engine Plug-in
Intel Xeon CPU E3-1220 v5 @ 3.00GHz
Intel Xeon CPU E3-1220 v5 @ 3.00GHz
Intel Xeon CPU E3-1220 v5 @ 3.00GHz
Intel Xeon CPU E3-1220 v5 @ 3.00GHz
Microsoft Windows Management Interface
for ACPI
Microsoft Windows Management Interface
for ACPI
Motherboard resources
PCI Express Root Complex
Intel 100 Series/C230 Series
Chipset Family PMC - A121
Intel 100 Series/C230 Series
Chipset Family SMBus - A123
Intel 100 Series/C230 Series
Chipset Family Thermal subsystem - A131
Intel Ethernet Connection (2)
I219-LM
Motherboard resources
Motherboard resources
Motherboard resources
Motherboard resources
PCI standard host CPU bridge
PCI-to-PCI Bridge
NVIDIA
Quadro K620
HID-compliant mouse
Intel(R) Management
Engine Interface
Generic software
component
Intel Dynamic
Application Loader Host Interface
Intel iCLS Client
Standard SATA AHCI
Controller
HL-DT-ST DVD+-RW
GHB0N
ST1000DM003-1SB102
TS256GSSD360S
Intel(R) 100 Series/C230
Series Chipset Family PCI Express Root Port #1 - A110
PCI-to-PCI Bridge
Intel(R) 100 Series/C230
Series Chipset Family LPC Controller (C236) - A149
Communications
Port (COM1)
High precision
event timer
Legacy device
Motherboard
resources
Motherboard
resources
Motherboard
resources
Motherboard
resources
Numeric data
processor
Programmable
interrupt controller
System CMOS/real
time clock
System timer
High Definition Audio
Controller
Realtek
Audio