PC Sound
PC Sound
Operating System
Windows 11 Home Single Language 64-bit
CPU
Intel Core i5 14500 55 �C
Raptor Lake 10nm Technology
RAM
8.00GB Dual-Channel Unknown @ 2194MHz (36-36-36-70)
Motherboard
ASUSTeK COMPUTER INC. D701MER (U3E1) 49 �C
Graphics
C2223HE (1920x1080@60Hz)
Intel UHD Graphics 770 (ASUStek Computer Inc)
Storage
476GB NVMe WD PC SN5000S SDEQNSJ-512G-1002 (Unknown (SSD))
Optical Drives
No optical disk drives detected
Audio
Realtek High Definition Audio
Operating System
Windows 11 Home Single Language 64-bit
Computer type: Virtual
Installation Date: 5/7/2025 3:18:43 AM
Serial Number: M7JJK-3PBV8-QMP9C-HTPHR-844TQ
Windows Security Center
User Account Control (UAC) Enabled
Notify level 2 - Default
Windows Update
AutoUpdate Not configured
Windows Defender
Windows Defender Enabled
Firewall
Firewall Enabled
Display Name Symantec Endpoint Protection
Antivirus
Symantec Endpoint Protection
Antivirus Disabled
Company Name Symantec
Product Version 14.3.12154.10000
Virus Signature Database Up to date
Windows Defender
Antivirus Disabled
Virus Signature Database Up to date
.NET Frameworks installed
v4.8 Full
v4.8 Client
v3.5 SP1
v3.0 SP2
v2.0 SP2
Internet Explorer
Version 11.1882.26100.0
PowerShell
Version 5.1.26100.1882
Environment Variables
USERPROFILE C:\Users\Admin
SystemRoot C:\Windows
User Variables
OneDrive C:\Users\Admin\OneDrive
Path C:\Users\Admin\AppData\Local\Microsoft\
WindowsApps
TEMP C:\Users\Admin\AppData\Local\Temp
TMP C:\Users\Admin\AppData\Local\Temp
Machine Variables
ComSpec C:\Windows\system32\cmd.exe
DriverData C:\Windows\System32\Drivers\DriverData
NUMBER_OF_PROCESSORS 20
OS Windows_NT
Path C:\Windows\system32
C:\Windows
C:\Windows\System32\Wbem
C:\Windows\System32\WindowsPowerShell\v1.0\
C:\Windows\System32\OpenSSH\
PATHEXT
.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
PROCESSOR_ARCHITECTURE AMD64
PROCESSOR_IDENTIFIER Intel64 Family 6 Model 191
Stepping 2, GenuineIntel
PROCESSOR_LEVEL 6
PROCESSOR_REVISION bf02
PSModulePath %ProgramFiles%\WindowsPowerShell\
Modules
C:\Windows\system32\WindowsPowerShell\v1.0\Modules
TEMP C:\Windows\TEMP
TMP C:\Windows\TEMP
USERNAME SYSTEM
windir C:\Windows
ZES_ENABLE_SYSMAN 1
Power Profile
Active power scheme Balanced
Hibernation Enabled
Turn Off Monitor after: (On AC Power) Never
Turn Off Hard Disk after: (On AC Power) 3 min
Suspend after: (On AC Power) Never
Screen saver Disabled
Uptime
Current Session
Current Time 5/8/2025 1:06:53 PM
Current Uptime 94 sec (0 d, 00 h, 01 m, 34 s)
Last Boot Time 5/8/2025 1:05:19 PM
Services
Running Adobe Acrobat Update Service
Running AnyDesk Service
Running App Readiness
Running Application Identity
Running Application Information
Running AppX Deployment Service (AppXSVC)
Running ASUS App Service
Running ASUS Business/Service Utility
Running ASUS Optimization
Running ASUS Software Manager
Running ASUS Switch
Running ASUS System Analysis
Running ASUS System Diagnosis
Running AVCTP service
Running Background Tasks Infrastructure Service
Running Base Filtering Engine
Running BitLocker Drive Encryption Service
Running Bluetooth Audio Gateway Service
Running Bluetooth Support Service
Running Bluetooth User Support Service_dd912
Running Capability Access Manager Service
Running Client License Service (ClipSVC)
Running Clipboard User Service_dd912
Running CNG Key Isolation
Running COM+ Event System
Running Connected Devices Platform Service
Running Connected Devices Platform User Service_dd912
Running Connected User Experiences and Telemetry
Running Contact Data_dd912
Running CoreMessaging
Running Cryptographic Services
Running Data Usage
Running DCOM Server Process Launcher
Running Device Association Service
Running DHCP Client
Running Diagnostic Policy Service
Running Diagnostic System Host
Running Dirac Audio Service
Running Display Policy Service
Running Distributed Link Tracking Client
Running DNS Client
Running Geolocation Service
Running Group Policy Client
Running Human Interface Device Service
Running HV Host Service
Running IKE and AuthIP IPsec Keying Modules
Running Intel Content Protection HDCP Service
Running Intel Dynamic Application Loader Host Interface
Service
Running Intel Dynamic Tuning Technology Telemetry Service
Running Intel Graphics Command Center Service
Running Intel Innovation Platform Framework Service
Running Intel Management Engine WMI Provider Registration
Running Intel Storage Middleware Service
Running intelliGo Audio Service
Running IP Helper
Running Local Session Manager
Running Microsoft Account Sign-in Assistant
Running Microsoft Defender Antivirus Service
Running Microsoft Defender Core Service
Running Microsoft Office Click-to-Run Service
Running Microsoft Passport
Running Microsoft Passport Container
Running Microsoft Software Shadow Copy Provider
Running Network Connection Broker
Running Network List Service
Running Network Setup Service
Running Network Store Interface Service
Running Plug and Play
Running Portable Device Enumerator Service
Running Power
Running Print Device Configuration Service
Running Print Spooler
Running Program Compatibility Assistant Service
Running Radio Management Service
Running Realtek Audio Universal Service
Running Realtek Bluetooth Device Manager Service
Running Remote Procedure Call (RPC)
Running RPC Endpoint Mapper
Running rpcnet
Running Security Accounts Manager
Running Server
Running Shell Hardware Detection
Running State Repository Service
Running Symantec Endpoint Protection
Running Symantec Endpoint Protection Scan Service
Running Symantec Endpoint Protection WSC Service
Running SysMain
Running System Event Notification Service
Running System Events Broker
Running Task Scheduler
Running TCP/IP NetBIOS Helper
Running Text Input Management Service
Running Themes
Running Time Broker
Running Udk User Service_dd912
Running User Data Access_dd912
Running User Data Storage_dd912
Running User Manager
Running User Profile Service
Running Volume Shadow Copy
Running Web Account Manager
Running Web Threat Defense Service
Running Web Threat Defense User Service_dd912
Running Windows Audio
Running Windows Audio Endpoint Builder
Running Windows Camera Frame Server Monitor
Running Windows Connection Manager
Running Windows Defender Firewall
Running Windows Event Log
Running Windows Font Cache Service
Running Windows Management Instrumentation
Running Windows Modules Installer
Running Windows Push Notifications System Service
Running Windows Push Notifications User Service_dd912
Running Windows Search
Running Windows Security Service
Running WinHTTP Web Proxy Auto-Discovery Service
Running WLAN AutoConfig
Running Workstation
Running WSAIFabricSvc
Stopped ActiveX Installer (AxInstSV)
Stopped Agent Activation Runtime_dd912
Stopped Application Layer Gateway Service
Stopped ASUS Business/System Analysis
Stopped Auto Time Zone Updater
Stopped Background Intelligent Transfer Service
Stopped Block Level Backup Engine Service
Stopped CaptureService_dd912
Stopped Cellular Time
Stopped Certificate Propagation
Stopped Cloud Backup and Restore Service_dd912
Stopped COM+ System Application
Stopped ConsentUX User Service_dd912
Stopped Credential Manager
Stopped CredentialEnrollmentManagerUserSvc_dd912
Stopped ctes
Stopped CtesHostService
Stopped Data Sharing Service
Stopped Declared Configuration(DC) service
Stopped Delivery Optimization
Stopped Device Install Service
Stopped Device Management Enrollment Service
Stopped Device Management Wireless Application Protocol (WAP)
Push message Routing Service
Stopped Device Setup Manager
Stopped DeviceAssociationBroker_dd912
Stopped DevicePicker_dd912
Stopped DevicesFlow_dd912
Stopped DevQuery Background Discovery Broker
Stopped Diagnostic Execution Service
Stopped Diagnostic Service Host
Stopped Display Enhancement Service
Stopped Distributed Transaction Coordinator
Stopped Downloaded Maps Manager
Stopped Embedded Mode
Stopped Encrypting File System (EFS)
Stopped Enterprise App Management Service
Stopped Extensible Authentication Protocol
Stopped File History Service
Stopped Function Discovery Provider Host
Stopped Function Discovery Resource Publication
Stopped GameDVR and Broadcast User Service_dd912
Stopped GameInput Service
Stopped Google Chrome Elevation Service
(GoogleChromeElevationService)
Stopped Google Updater Internal Service
(GoogleUpdaterInternalService138.0.7156.0)
Stopped Google Updater Service
(GoogleUpdaterService138.0.7156.0)
Stopped GraphicsPerfSvc
Stopped Hyper-V Data Exchange Service
Stopped Hyper-V Guest Service Interface
Stopped Hyper-V Guest Shutdown Service
Stopped Hyper-V Heartbeat Service
Stopped Hyper-V PowerShell Direct Service
Stopped Hyper-V Remote Desktop Virtualization Service
Stopped Hyper-V Time Synchronization Service
Stopped Hyper-V Volume Shadow Copy Requestor
Stopped Intel Platform License Manager Service
Stopped Internet Connection Sharing (ICS)
Stopped Inventory and Compatibility Appraisal service
Stopped IP Translation Configuration Service
Stopped IPsec Policy Agent
Stopped Kerberos Local Key Distribution Center
Stopped KtmRm for Distributed Transaction Coordinator
Stopped Language Experience Service
Stopped Link-Layer Topology Discovery Mapper
Stopped Local Profile Assistant Service
Stopped McpManagementService
Stopped MessagingService_dd912
Stopped Microsoft Defender Antivirus Network Inspection
Service
Stopped Microsoft Edge Elevation Service
(MicrosoftEdgeElevationService)
Stopped Microsoft Edge Update Service (edgeupdate)
Stopped Microsoft Edge Update Service (edgeupdatem)
Stopped Microsoft iSCSI Initiator Service
Stopped Microsoft Storage Spaces SMP
Stopped Microsoft Store Install Service
Stopped Microsoft Windows SMS Router Service.
Stopped Natural Authentication
Stopped Net.Tcp Port Sharing Service
Stopped Netlogon
Stopped Network Connected Devices Auto-Setup
Stopped Network Connections
Stopped Network Connectivity Assistant
Stopped Network Location Awareness
Stopped Now Playing Session Manager Service_dd912
Stopped OpenSSH Authentication Agent
Stopped Optimize drives
Stopped P9RdrService_dd912
Stopped Parental Controls
Stopped Payments and NFC/SE Manager
Stopped PenService_dd912
Stopped Performance Counter DLL Host
Stopped Performance Logs & Alerts
Stopped Phone Service
Stopped Printer Extensions and Notifications
Stopped PrintScanBrokerService
Stopped PrintWorkflow_dd912
Stopped Problem Reports Control Panel Support
Stopped Quality Windows Audio Video Experience
Stopped Recommended Troubleshooting Service
Stopped ReFS Dedup Service
Stopped Remote Access Auto Connection Manager
Stopped Remote Access Connection Manager
Stopped Remote Desktop Configuration
Stopped Remote Desktop Services
Stopped Remote Desktop Services UserMode Port Redirector
Stopped Remote Procedure Call (RPC) Locator
Stopped Remote Registry
Stopped Retail Demo Service
Stopped Routing and Remote Access
Stopped rpchdp
Stopped Secondary Logon
Stopped Secure Socket Tunneling Protocol Service
Stopped Security Center
Stopped Sensor Data Service
Stopped Sensor Monitoring Service
Stopped Sensor Service
Stopped Shared PC Account Manager
Stopped Smart Card
Stopped Smart Card Device Enumeration Service
Stopped Smart Card Removal Policy
Stopped SNMP Trap
Stopped Software Protection
Stopped Spot Verifier
Stopped SSDP Discovery
Stopped Still Image Acquisition Events
Stopped Storage Service
Stopped Storage Tiers Management
Stopped Symantec Endpoint Protection Local Proxy Service
Stopped Symantec Network Access Control
Stopped Sync Host_dd912
Stopped Telephony
Stopped Update Orchestrator Service
Stopped UPnP Device Host
Stopped Virtual Disk
Stopped WaaSMedicSvc
Stopped WalletService
Stopped Warp JIT Service
Stopped WebClient
Stopped Wi-Fi Direct Services Connection Manager Service
Stopped Windows Backup
Stopped Windows Biometric Service
Stopped Windows Camera Frame Server
Stopped Windows Connect Now - Config Registrar
Stopped Windows Encryption Provider Host Service
Stopped Windows Error Reporting Service
Stopped Windows Event Collector
Stopped Windows Image Acquisition (WIA)
Stopped Windows Insider Service
Stopped Windows Installer
Stopped Windows License Manager Service
Stopped Windows Management Service
Stopped Windows Media Player Network Sharing Service
Stopped Windows Mobile Hotspot Service
Stopped Windows Perception Simulation Service
Stopped Windows Presentation Foundation Font Cache 3.0.0.0
Stopped Windows PushToInstall Service
Stopped Windows Remote Management (WS-Management)
Stopped Windows Time
Stopped Windows Update
Stopped Windows Virtual Audio Device Proxy Service
Stopped Wired AutoConfig
Stopped WMI Performance Adapter
Stopped Work Folders
Stopped WWAN AutoConfig
Stopped Xbox Accessory Management Service
Stopped Xbox Live Auth Manager
Stopped Xbox Live Game Save
Stopped Xbox Live Networking Service
Stopped ZTHELPER
TimeZone
TimeZone GMT +7:00 Hours
Language English (United States)
Location United States
Format English (United States)
Currency $
Date Format M/d/yyyy
Time Format h:mm:ss tt
Scheduler
5/8/2025 1:55 PM; OneDrive Reporting Task-S-1-5-21-1398774034-
1472895410-1147812709-1001
5/8/2025 5:54 PM; OneDrive Standalone Update Task-S-1-5-21-
1398774034-1472895410-1147812709-1001
5/8/2025 6:54 PM; OneDrive Standalone Update Task-S-1-5-21-
1398774034-1472895410-1147812709-500
5/9/2025 12:00 PM; Adobe Acrobat Update Task
ASUS Optimization 36D18D69AFC3
ASUS Update Checker 2.0
iGoAudioTask
iGoAudioTaskSession
Hotfixes
Installed
5/8/2025 2025-04 Cumulative Update Preview for
Windows 11 Version 24H2 for x64-based Systems (KB5055627)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
5/8/2025 2025-04 Cumulative Update Preview for
.NET Framework 3.5 and 4.8.1 for Windows 11, version 24H2 for x64 (KB5056579)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
5/8/2025 ASUSTeK COMPUTER INC. - Firmware -
10.1.2.306
ASUSTeK COMPUTER INC. Firmware driver
update released in December
2024
5/8/2025 2025-04 Cumulative Update for .NET
Framework 3.5 and 4.8.1 for Windows 11, version 24H2 for x64 (KB5054979)
Install this update to resolve issues in
Windows. For a complete
listing of the issues that are included
in this update, see the
associated Microsoft Knowledge Base
article for more information.
After you install this item, you may have
to restart your computer.
5/8/2025 Update for Microsoft Defender
Antivirus antimalware platform - KB4052623 (Version 4.18.25030.2) - Current Channel
(Broad)
This package will update Microsoft
Defender Antivirus antimalware
platform�s components on the user
machine.
5/8/2025 ASUSTeK COMPUTER INC. - System -
3.1.43.0
ASUSTeK COMPUTER INC. System driver
update released in February
2025
5/8/2025 Update for Windows Security platform
- KB5007651 (Version 10.0.27777.1008)
This package will update Windows Security
platform components
on the user machine.
5/8/2025 Windows Malicious Software Removal
Tool x64 - v5.132 (KB890830)
After the download, this tool runs one
time to check your computer
for infection by specific, prevalent
malicious software (including
Blaster, Sasser, and Mydoom) and helps
remove any infection that
is found. If an infection is found, the
tool will display a status
report the next time that you start your
computer. A new version
of the tool will be offered every month.
If you want to manually
run the tool on your computer, you can
download a copy from the
Microsoft Download Center, or you can run
an online version from
microsoft.com. This tool is not a
replacement for an antivirus
product. To help protect your computer,
you should use an antivirus
product.
5/8/2025 Security Intelligence Update for
Microsoft Defender Antivirus - KB2267602 (Version 1.427.690.0) - Current Channel
(Broad)
Install this update to revise the files
that are used to detect
viruses, spyware, and other potentially
unwanted software. Once
you have installed this item, it cannot
be removed.
Not Installed
5/8/2025 9NH2SW16MQ7F-
Microsoft.WindowsAppRuntime.1.5
Installation Status Failed
9NH2SW16MQ7F-1152921505698764278
System Folders
Application Data C:\ProgramData
Cookies C:\Users\Admin\AppData\Local\Microsoft\Windows\
INetCookies
Desktop C:\Users\Admin\Desktop
Documents C:\Users\Public\Documents
Fonts C:\Windows\Fonts
Global Favorites C:\Users\Admin\Favorites
Internet History C:\Users\Admin\AppData\Local\Microsoft\Windows\
History
Local Application Data C:\Users\Admin\AppData\Local
Music C:\Users\Public\Music
Path for burning CD C:\Users\Admin\AppData\Local\Microsoft\
Windows\Burn\Burn
Physical Desktop C:\Users\Admin\Desktop
Pictures C:\Users\Public\Pictures
Program Files C:\Program Files
Public Desktop C:\Users\Public\Desktop
Start Menu C:\ProgramData\Microsoft\Windows\Start Menu
Start Menu Programs C:\ProgramData\Microsoft\Windows\Start
Menu\Programs
Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\
Startup
Templates C:\ProgramData\Microsoft\Windows\Templates
Temporary Internet Files C:\Users\Admin\AppData\Local\
Microsoft\Windows\INetCache
User Favorites C:\Users\Admin\Favorites
Videos C:\Users\Public\Videos
Windows Directory C:\Windows
Windows/System C:\Windows\system32
Process List
AggregatorHost.exe
Process ID 8020
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\AggregatorHost.exe
Memory Usage 10 MB
Peak Memory Usage 11 MB
AnyDesk.exe
Process ID 16208
User Admin
Domain PC-SOUND
Path C:\Program Files (x86)\AnyDesk\AnyDesk.exe
Memory Usage 145 MB
Peak Memory Usage 145 MB
AnyDesk.exe
Process ID 4724
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\AnyDesk\AnyDesk.exe
Memory Usage 53 MB
Peak Memory Usage 64 MB
armsvc.exe
Process ID 4684
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Common Files\Adobe\ARM\
1.0\armsvc.exe
Memory Usage 8.28 MB
Peak Memory Usage 8.59 MB
AsusAppService.exe
Process ID 4772
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
asussci2.inf_amd64_f57c48cf404ebc46\AsusAppService\AsusAppService.exe
Memory Usage 30 MB
Peak Memory Usage 32 MB
AsusOptimization.exe
Process ID 4032
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
asussci2.inf_amd64_f57c48cf404ebc46\ASUSOptimization\AsusOptimization.exe
Memory Usage 12 MB
Peak Memory Usage 12 MB
AsusOptimizationStartupTask.exe
Process ID 9916
User Admin
Domain PC-SOUND
Path C:\Windows\System32\DriverStore\FileRepository\
asussci2.inf_amd64_f57c48cf404ebc46\ASUSOptimization\
AsusOptimizationStartupTask.exe
Memory Usage 7.93 MB
Peak Memory Usage 8.37 MB
AsusSoftwareManager.exe
Process ID 4732
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
asussci2.inf_amd64_f57c48cf404ebc46\ASUSSoftwareManager\AsusSoftwareManager.exe
Memory Usage 23 MB
Peak Memory Usage 23 MB
AsusSwitch.exe
Process ID 4740
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
asussci2.inf_amd64_f57c48cf404ebc46\ASUSSwitch\AsusSwitch.exe
Memory Usage 10 MB
Peak Memory Usage 10 MB
AsusSystemAnalysis.exe
Process ID 4716
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
asussci2.inf_amd64_f57c48cf404ebc46\ASUSSystemAnalysis\AsusSystemAnalysis.exe
Memory Usage 16 MB
Peak Memory Usage 18 MB
AsusSystemDiagnosis.exe
Process ID 4784
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
asussci2.inf_amd64_f57c48cf404ebc46\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe
Memory Usage 13 MB
Peak Memory Usage 14 MB
audiodg.exe
Process ID 15228
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\audiodg.exe
Memory Usage 21 MB
Peak Memory Usage 47 MB
backgroundTaskHost.exe
Process ID 12356
User Admin
Domain PC-SOUND
Path C:\Windows\System32\backgroundTaskHost.exe
Memory Usage 17 MB
Peak Memory Usage 19 MB
backgroundTaskHost.exe
Process ID 12136
User Admin
Domain PC-SOUND
Path C:\Windows\System32\backgroundTaskHost.exe
Memory Usage 18 MB
Peak Memory Usage 20 MB
backgroundTaskHost.exe
Process ID 10580
User Admin
Domain PC-SOUND
Path C:\Windows\System32\backgroundTaskHost.exe
Memory Usage 17 MB
Peak Memory Usage 20 MB
backgroundTaskHost.exe
Process ID 6684
User Admin
Domain PC-SOUND
Path C:\Windows\System32\backgroundTaskHost.exe
Memory Usage 23 MB
Peak Memory Usage 28 MB
backgroundTaskHost.exe
Process ID 12052
User Admin
Domain PC-SOUND
Path C:\Windows\System32\backgroundTaskHost.exe
Memory Usage 19 MB
Peak Memory Usage 23 MB
backgroundTaskHost.exe
Process ID 13320
User Admin
Domain PC-SOUND
Path C:\Windows\System32\backgroundTaskHost.exe
Memory Usage 21 MB
Peak Memory Usage 24 MB
backgroundTaskHost.exe
Process ID 13368
User Admin
Domain PC-SOUND
Path C:\Windows\System32\backgroundTaskHost.exe
Memory Usage 25 MB
Peak Memory Usage 33 MB
backgroundTaskHost.exe
Process ID 13432
User Admin
Domain PC-SOUND
Path C:\Windows\System32\backgroundTaskHost.exe
Memory Usage 16 MB
Peak Memory Usage 19 MB
backgroundTaskHost.exe
Process ID 13612
User Admin
Domain PC-SOUND
Path C:\Windows\System32\backgroundTaskHost.exe
Memory Usage 19 MB
Peak Memory Usage 22 MB
backgroundTaskHost.exe
Process ID 13864
User Admin
Domain PC-SOUND
Path C:\Windows\System32\backgroundTaskHost.exe
Memory Usage 14 MB
Peak Memory Usage 16 MB
cceventapp.exe
Process ID 10404
User Admin
Domain PC-SOUND
Path C:\Windows\System32\DriverStore\FileRepository\
asuscsci.inf_amd64_e13e7c68bb3b7e09\amd64\cceventapp.exe
Memory Usage 23 MB
Peak Memory Usage 23 MB
ccservice.exe
Process ID 4748
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
asuscsci.inf_amd64_e13e7c68bb3b7e09\amd64\ccservice.exe
Memory Usage 16 MB
Peak Memory Usage 16 MB
ccSvcHst.exe
Process ID 9680
User Admin
Domain PC-SOUND
Path C:\Program Files\Symantec\Symantec Endpoint
Protection\14.3.12154.10000.105\Bin64\ccSvcHst.exe
Memory Usage 32 MB
Peak Memory Usage 32 MB
ccSvcHst.exe
Process ID 4836
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Symantec\Symantec Endpoint
Protection\14.3.12154.10000.105\Bin64\ccSvcHst.exe
Memory Usage 378 MB
Peak Memory Usage 493 MB
ccSvcHst.exe
Process ID 4820
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Symantec\Symantec Endpoint
Protection\14.3.12154.10000.105\Bin64\ccSvcHst.exe
Memory Usage 157 MB
Peak Memory Usage 186 MB
conhost.exe
Process ID 12928
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\conhost.exe
Memory Usage 6.16 MB
Peak Memory Usage 6.60 MB
csrss.exe
Process ID 1400
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\csrss.exe
Memory Usage 6.36 MB
Peak Memory Usage 7.27 MB
csrss.exe
Process ID 1504
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\csrss.exe
Memory Usage 7.13 MB
Peak Memory Usage 15 MB
ctfmon.exe
Process ID 15144
User Admin
Domain PC-SOUND
Path C:\Windows\System32\ctfmon.exe
Memory Usage 26 MB
Peak Memory Usage 26 MB
DiracAudSrv.exe
Process ID 4800
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
diracservice.inf_amd64_613ca21a50f088c8\DiracAudSrv.exe
Memory Usage 9.52 MB
Peak Memory Usage 9.83 MB
DismHost.exe
Process ID 7952
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\Dism\DismHost.exe
Memory Usage 10 MB
Peak Memory Usage 12 MB
dllhost.exe
Process ID 11744
User Admin
Domain PC-SOUND
Path C:\Windows\System32\dllhost.exe
Memory Usage 15 MB
Peak Memory Usage 18 MB
dwm.exe
Process ID 1572
User DWM-1
Domain Window Manager
Path C:\Windows\System32\dwm.exe
Memory Usage 159 MB
Peak Memory Usage 187 MB
explorer.exe
Process ID 10344
User Admin
Domain PC-SOUND
Path C:\Windows\explorer.exe
Memory Usage 311 MB
Peak Memory Usage 319 MB
fontdrvhost.exe
Process ID 1856
User UMFD-0
Domain Font Driver Host
Path C:\Windows\System32\fontdrvhost.exe
Memory Usage 5.26 MB
Peak Memory Usage 5.62 MB
fontdrvhost.exe
Process ID 1864
User UMFD-1
Domain Font Driver Host
Path C:\Windows\System32\fontdrvhost.exe
Memory Usage 5.89 MB
Peak Memory Usage 6.10 MB
IgoAudioService_x64.exe
Process ID 4792
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
igoaudioservice.inf_amd64_8831ef8162bf186c\IgoAudioService_x64.exe
Memory Usage 26 MB
Peak Memory Usage 26 MB
iGoSwServer.exe
Process ID 5636
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
igoaudioservice.inf_amd64_8831ef8162bf186c\iGoSwServer.exe
Memory Usage 3.57 MB
Peak Memory Usage 134 MB
iGoSwServer.exe
Process ID 9488
User Admin
Domain PC-SOUND
Path C:\Windows\System32\DriverStore\FileRepository\
igoaudioservice.inf_amd64_8831ef8162bf186c\iGoSwServer.exe
Memory Usage 5.90 MB
Peak Memory Usage 19 MB
IntelCpHDCPSvc.exe
Process ID 2488
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
iigd_dch.inf_amd64_e16847b202e73a31\IntelCpHDCPSvc.exe
Memory Usage 8.11 MB
Peak Memory Usage 8.50 MB
ipf_helper.exe
Process ID 9856
User Admin
Domain PC-SOUND
Path C:\Windows\System32\DriverStore\FileRepository\
ipf_cpu.inf_amd64_fe2967a6eb0d3a7d\ipf_helper.exe
Memory Usage 8.26 MB
Peak Memory Usage 8.69 MB
ipf_uf.exe
Process ID 5020
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
ipf_cpu.inf_amd64_fe2967a6eb0d3a7d\ipf_uf.exe
Memory Usage 8.65 MB
Peak Memory Usage 8.90 MB
ipfsvc.exe
Process ID 4884
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
dtt_sw.inf_amd64_683097297aaa9bb4\ipfsvc.exe
Memory Usage 7.72 MB
Peak Memory Usage 7.93 MB
jhi_service.exe
Process ID 5056
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
dal.inf_amd64_8a3f88e34f6b8385\jhi_service.exe
Memory Usage 8.59 MB
Peak Memory Usage 8.88 MB
LsaIso.exe
Process ID 1600
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\LsaIso.exe
Memory Usage 4.04 MB
Peak Memory Usage 4.11 MB
lsass.exe
Process ID 1616
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\lsass.exe
Memory Usage 25 MB
Peak Memory Usage 25 MB
makecab.exe
Process ID 12912
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\makecab.exe
Memory Usage 5.39 MB
Peak Memory Usage 5.87 MB
Memory Compression
Process ID 3228
User SYSTEM
Domain NT AUTHORITY
Memory Usage 65 MB
Peak Memory Usage 104 MB
MicrosoftEdgeUpdate.exe
Process ID 7676
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Microsoft\EdgeUpdate\
MicrosoftEdgeUpdate.exe
Memory Usage 780 KB
Peak Memory Usage 13 MB
MpDefenderCoreService.exe
Process ID 5068
User SYSTEM
Domain NT AUTHORITY
Path C:\ProgramData\Microsoft\Windows Defender\
Platform\4.18.25030.2-0\MpDefenderCoreService.exe
Memory Usage 18 MB
Peak Memory Usage 18 MB
msedgewebview2.exe
Process ID 13100
User Admin
Domain PC-SOUND
Path C:\Windows\System32\Microsoft-Edge-WebView\
msedgewebview2.exe
Memory Usage 108 MB
Peak Memory Usage 113 MB
msedgewebview2.exe
Process ID 13396
User Admin
Domain PC-SOUND
Path C:\Windows\System32\Microsoft-Edge-WebView\
msedgewebview2.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
msedgewebview2.exe
Process ID 13556
User Admin
Domain PC-SOUND
Path C:\Windows\System32\Microsoft-Edge-WebView\
msedgewebview2.exe
Memory Usage 8.78 MB
Peak Memory Usage 9.48 MB
msedgewebview2.exe
Process ID 15564
User Admin
Domain PC-SOUND
Path C:\Windows\System32\Microsoft-Edge-WebView\
msedgewebview2.exe
Memory Usage 123 MB
Peak Memory Usage 144 MB
msedgewebview2.exe
Process ID 15612
User Admin
Domain PC-SOUND
Path C:\Windows\System32\Microsoft-Edge-WebView\
msedgewebview2.exe
Memory Usage 38 MB
Peak Memory Usage 46 MB
msedgewebview2.exe
Process ID 15660
User Admin
Domain PC-SOUND
Path C:\Windows\System32\Microsoft-Edge-WebView\
msedgewebview2.exe
Memory Usage 20 MB
Peak Memory Usage 21 MB
msedgewebview2.exe
Process ID 15724
User Admin
Domain PC-SOUND
Path C:\Windows\System32\Microsoft-Edge-WebView\
msedgewebview2.exe
Memory Usage 107 MB
Peak Memory Usage 114 MB
MsMpEng.exe
Process ID 5032
User SYSTEM
Domain NT AUTHORITY
Path C:\ProgramData\Microsoft\Windows Defender\
Platform\4.18.25030.2-0\MsMpEng.exe
Memory Usage 231 MB
Peak Memory Usage 293 MB
NgcIso.exe
Process ID 9160
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\NgcIso.exe
Memory Usage 4.29 MB
Peak Memory Usage 4.57 MB
OfficeClickToRun.exe
Process ID 4940
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Common Files\microsoft shared\
ClickToRun\OfficeClickToRun.exe
Memory Usage 47 MB
Peak Memory Usage 47 MB
OneApp.IGCC.WinService.exe
Process ID 4756
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
igcc_dch.inf_amd64_2c7653f29a37d3f4\OneApp.IGCC.WinService.exe
Memory Usage 43 MB
Peak Memory Usage 43 MB
Registry
Process ID 328
User SYSTEM
Domain NT AUTHORITY
Memory Usage 64 MB
Peak Memory Usage 138 MB
rpcnet.exe
Process ID 4828
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\SysWOW64\rpcnet.exe
Memory Usage 7.38 MB
Peak Memory Usage 8.67 MB
RstMwService.exe
Process ID 4900
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
iastorvd.inf_amd64_80dcb7b409148fed\RstMwService.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
RtkAudUService64.exe
Process ID 4868
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
realtekservice.inf_amd64_52565dfecdf94b98\RtkAudUService64.exe
Memory Usage 17 MB
Peak Memory Usage 17 MB
RtkAudUService64.exe
Process ID 16196
User Admin
Domain PC-SOUND
Path C:\Windows\System32\DriverStore\FileRepository\
realtekservice.inf_amd64_52565dfecdf94b98\RtkAudUService64.exe
Memory Usage 18 MB
Peak Memory Usage 18 MB
RtkBtManServ.exe
Process ID 4852
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\RtkBtManServ.exe
Memory Usage 11 MB
Peak Memory Usage 12 MB
RuntimeBroker.exe
Process ID 13572
User Admin
Domain PC-SOUND
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 16 MB
Peak Memory Usage 17 MB
RuntimeBroker.exe
Process ID 12412
User Admin
Domain PC-SOUND
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 40 MB
Peak Memory Usage 40 MB
RuntimeBroker.exe
Process ID 12448
User Admin
Domain PC-SOUND
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 47 MB
Peak Memory Usage 55 MB
RuntimeBroker.exe
Process ID 14928
User Admin
Domain PC-SOUND
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 17 MB
Peak Memory Usage 17 MB
SearchHost.exe
Process ID 7256
User Admin
Domain PC-SOUND
Path C:\Windows\SystemApps\
MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe
Memory Usage 157 MB
Peak Memory Usage 160 MB
SearchIndexer.exe
Process ID 11404
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SearchIndexer.exe
Memory Usage 24 MB
Peak Memory Usage 25 MB
SearchProtocolHost.exe
Process ID 15892
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SearchProtocolHost.exe
Memory Usage 18 MB
Peak Memory Usage 19 MB
Secure System
Process ID 284
User SYSTEM
Domain NT AUTHORITY
Memory Usage 124 KB
Peak Memory Usage 156 KB
SecurityHealthService.exe
Process ID 2940
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SecurityHealthService.exe
Memory Usage 21 MB
Peak Memory Usage 22 MB
SecurityHealthSystray.exe
Process ID 16352
User Admin
Domain PC-SOUND
Path C:\Windows\System32\SecurityHealthSystray.exe
Memory Usage 13 MB
Peak Memory Usage 13 MB
sepWscSvc64.exe
Process ID 4964
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Symantec\Symantec Endpoint
Protection\14.3.12154.10000.105\Bin64\sepWscSvc64.exe
Memory Usage 15 MB
Peak Memory Usage 16 MB
services.exe
Process ID 1576
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\services.exe
Memory Usage 12 MB
Peak Memory Usage 13 MB
ShellHost.exe
Process ID 10368
User Admin
Domain PC-SOUND
Path C:\Windows\System32\ShellHost.exe
Memory Usage 65 MB
Peak Memory Usage 65 MB
sihost.exe
Process ID 9792
User Admin
Domain PC-SOUND
Path C:\Windows\System32\sihost.exe
Memory Usage 43 MB
Peak Memory Usage 43 MB
smartscreen.exe
Process ID 11236
User Admin
Domain PC-SOUND
Path C:\Windows\System32\smartscreen.exe
Memory Usage 13 MB
Peak Memory Usage 13 MB
smss.exe
Process ID 968
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\smss.exe
Memory Usage 1.64 MB
Peak Memory Usage 1.68 MB
Speccy64.exe
Process ID 7140
User Admin
Domain PC-SOUND
Path C:\Program Files\Speccy\Speccy64.exe
Memory Usage 88 MB
Peak Memory Usage 89 MB
spoolsv.exe
Process ID 4200
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\spoolsv.exe
Memory Usage 33 MB
Peak Memory Usage 37 MB
Spotify.exe
Process ID 16068
User Admin
Domain PC-SOUND
Path C:\Users\Admin\AppData\Roaming\Spotify\
Spotify.exe
Memory Usage 135 MB
Peak Memory Usage 137 MB
Spotify.exe
Process ID 8100
User Admin
Domain PC-SOUND
Path C:\Users\Admin\AppData\Roaming\Spotify\
Spotify.exe
Memory Usage 22 MB
Peak Memory Usage 22 MB
Spotify.exe
Process ID 16460
User Admin
Domain PC-SOUND
Path C:\Users\Admin\AppData\Roaming\Spotify\
Spotify.exe
Memory Usage 83 MB
Peak Memory Usage 83 MB
Spotify.exe
Process ID 16476
User Admin
Domain PC-SOUND
Path C:\Users\Admin\AppData\Roaming\Spotify\
Spotify.exe
Memory Usage 42 MB
Peak Memory Usage 43 MB
Spotify.exe
Process ID 16492
User Admin
Domain PC-SOUND
Path C:\Users\Admin\AppData\Roaming\Spotify\
Spotify.exe
Memory Usage 26 MB
Peak Memory Usage 26 MB
Spotify.exe
Process ID 17104
User Admin
Domain PC-SOUND
Path C:\Users\Admin\AppData\Roaming\Spotify\
Spotify.exe
Memory Usage 87 MB
Peak Memory Usage 87 MB
StartMenuExperienceHost.exe
Process ID 10976
User Admin
Domain PC-SOUND
Path C:\Windows\SystemApps\
Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
Memory Usage 156 MB
Peak Memory Usage 157 MB
svchost.exe
Process ID 4924
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 14 MB
Peak Memory Usage 14 MB
svchost.exe
Process ID 4992
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.95 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 5008
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 15 MB
Peak Memory Usage 15 MB
svchost.exe
Process ID 3340
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 17 MB
Peak Memory Usage 17 MB
svchost.exe
Process ID 5412
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 6524
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.42 MB
Peak Memory Usage 9.34 MB
svchost.exe
Process ID 7788
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 41 MB
Peak Memory Usage 86 MB
svchost.exe
Process ID 8816
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 10 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 9184
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 8712
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 8988
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 2664
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 2124
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.36 MB
Peak Memory Usage 7.59 MB
svchost.exe
Process ID 10024
User Admin
Domain PC-SOUND
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 10032
User Admin
Domain PC-SOUND
Path C:\Windows\System32\svchost.exe
Memory Usage 22 MB
Peak Memory Usage 23 MB
svchost.exe
Process ID 10060
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 10120
User Admin
Domain PC-SOUND
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 10148
User Admin
Domain PC-SOUND
Path C:\Windows\System32\svchost.exe
Memory Usage 38 MB
Peak Memory Usage 38 MB
svchost.exe
Process ID 1832
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 44 MB
Peak Memory Usage 44 MB
svchost.exe
Process ID 7292
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 26 MB
Peak Memory Usage 26 MB
svchost.exe
Process ID 2004
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 17 MB
Peak Memory Usage 17 MB
svchost.exe
Process ID 9460
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 23 MB
Peak Memory Usage 23 MB
svchost.exe
Process ID 1308
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 2064
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.23 MB
Peak Memory Usage 7.49 MB
svchost.exe
Process ID 2088
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.35 MB
Peak Memory Usage 7.62 MB
svchost.exe
Process ID 10772
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 22 MB
Peak Memory Usage 22 MB
svchost.exe
Process ID 11064
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.65 MB
Peak Memory Usage 9.09 MB
svchost.exe
Process ID 2104
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 20 MB
Peak Memory Usage 298 MB
svchost.exe
Process ID 11252
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 14 MB
Peak Memory Usage 35 MB
svchost.exe
Process ID 10836
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 10 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 11340
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.04 MB
Peak Memory Usage 9.07 MB
svchost.exe
Process ID 2112
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.91 MB
Peak Memory Usage 14 MB
svchost.exe
Process ID 11480
User Admin
Domain PC-SOUND
Path C:\Windows\System32\svchost.exe
Memory Usage 24 MB
Peak Memory Usage 24 MB
svchost.exe
Process ID 2160
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 12072
User Admin
Domain PC-SOUND
Path C:\Windows\System32\svchost.exe
Memory Usage 21 MB
Peak Memory Usage 21 MB
svchost.exe
Process ID 2188
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 17 MB
Peak Memory Usage 17 MB
svchost.exe
Process ID 2196
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 14 MB
Peak Memory Usage 15 MB
svchost.exe
Process ID 2332
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 15 MB
Peak Memory Usage 16 MB
svchost.exe
Process ID 2348
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 14 MB
Peak Memory Usage 14 MB
svchost.exe
Process ID 12524
User Admin
Domain PC-SOUND
Path C:\Windows\System32\svchost.exe
Memory Usage 28 MB
Peak Memory Usage 29 MB
svchost.exe
Process ID 12580
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 32 MB
Peak Memory Usage 34 MB
svchost.exe
Process ID 2500
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.85 MB
Peak Memory Usage 8.13 MB
svchost.exe
Process ID 2556
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 14 MB
Peak Memory Usage 14 MB
svchost.exe
Process ID 2564
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 13116
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 16 MB
Peak Memory Usage 17 MB
svchost.exe
Process ID 2588
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.46 MB
Peak Memory Usage 8.96 MB
svchost.exe
Process ID 2732
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 21 MB
Peak Memory Usage 21 MB
svchost.exe
Process ID 2760
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.29 MB
Peak Memory Usage 8.40 MB
svchost.exe
Process ID 2808
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 2964
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.50 MB
Peak Memory Usage 9.66 MB
svchost.exe
Process ID 3052
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 26 MB
Peak Memory Usage 26 MB
svchost.exe
Process ID 2612
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 10 MB
Peak Memory Usage 10 MB
svchost.exe
Process ID 2744
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.89 MB
Peak Memory Usage 9.09 MB
svchost.exe
Process ID 2972
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 2836
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 3020
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.84 MB
Peak Memory Usage 7.98 MB
svchost.exe
Process ID 3264
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 3408
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 4764
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 52 MB
Peak Memory Usage 88 MB
svchost.exe
Process ID 3428
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 19 MB
svchost.exe
Process ID 3468
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 3604
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 17 MB
Peak Memory Usage 17 MB
svchost.exe
Process ID 3648
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 10 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 3696
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.55 MB
Peak Memory Usage 8.79 MB
svchost.exe
Process ID 3844
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 14 MB
Peak Memory Usage 14 MB
svchost.exe
Process ID 3852
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.88 MB
Peak Memory Usage 9.14 MB
svchost.exe
Process ID 4004
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 23 MB
Peak Memory Usage 24 MB
svchost.exe
Process ID 4040
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 19 MB
Peak Memory Usage 19 MB
svchost.exe
Process ID 4048
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.28 MB
Peak Memory Usage 9.72 MB
svchost.exe
Process ID 2872
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 18 MB
Peak Memory Usage 18 MB
svchost.exe
Process ID 4316
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 25 MB
Peak Memory Usage 33 MB
svchost.exe
Process ID 4348
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 10 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 4476
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 19 MB
Peak Memory Usage 31 MB
svchost.exe
Process ID 4844
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 26 MB
Peak Memory Usage 28 MB
svchost.exe
Process ID 4860
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 14 MB
Peak Memory Usage 19 MB
svchost.exe
Process ID 4876
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 4892
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 25 MB
Peak Memory Usage 27 MB
svchost.exe
Process ID 4916
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.60 MB
Peak Memory Usage 7.88 MB
svchost.exe
Process ID 17352
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 43 MB
Peak Memory Usage 43 MB
svchost.exe
Process ID 2212
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 24 MB
Peak Memory Usage 24 MB
svchost.exe
Process ID 3828
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 11 MB
System
Process ID 4
Memory Usage 2.43 MB
Peak Memory Usage 15 MB
System Idle Process
Process ID 0
taskhostw.exe
Process ID 3796
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\taskhostw.exe
Memory Usage 16 MB
Peak Memory Usage 45 MB
taskhostw.exe
Process ID 10424
User Admin
Domain PC-SOUND
Path C:\Windows\System32\taskhostw.exe
Memory Usage 18 MB
Peak Memory Usage 18 MB
TiWorker.exe
Process ID 2096
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\WinSxS\amd64_microsoft-windows-
servicingstack_31bf3856ad364e35_10.0.26100.3910_none_a4ec35037778d761\TiWorker.exe
Memory Usage 242 MB
Peak Memory Usage 255 MB
TrustedInstaller.exe
Process ID 3080
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\servicing\TrustedInstaller.exe
Memory Usage 9.95 MB
Peak Memory Usage 10 MB
unsecapp.exe
Process ID 9552
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\wbem\unsecapp.exe
Memory Usage 9.26 MB
Peak Memory Usage 9.67 MB
userinit.exe
Process ID 10276
User Admin
Domain PC-SOUND
Path C:\Windows\System32\userinit.exe
Memory Usage 7.70 MB
Peak Memory Usage 8.09 MB
UserOOBEBroker.exe
Process ID 10952
User Admin
Domain PC-SOUND
Path C:\Windows\System32\oobe\UserOOBEBroker.exe
Memory Usage 12 MB
Peak Memory Usage 12 MB
VSSVC.exe
Process ID 9800
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\VSSVC.exe
Memory Usage 13 MB
Peak Memory Usage 13 MB
Widgets.exe
Process ID 11964
User Admin
Domain PC-SOUND
Path C:\Program Files\WindowsApps\
MicrosoftWindows.Client.WebExperience_525.10401.30.0_x64__cw5n1h2txyewy\Dashboard\
Widgets.exe
Memory Usage 56 MB
Peak Memory Usage 62 MB
WidgetService.exe
Process ID 12556
User Admin
Domain PC-SOUND
Path C:\Program Files\WindowsApps\
Microsoft.WidgetsPlatformRuntime_1.6.9.0_x64__8wekyb3d8bbwe\WidgetService\
WidgetService.exe
Memory Usage 25 MB
Peak Memory Usage 25 MB
wininit.exe
Process ID 1496
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\wininit.exe
Memory Usage 8.45 MB
Peak Memory Usage 8.71 MB
winlogon.exe
Process ID 1696
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\winlogon.exe
Memory Usage 15 MB
Peak Memory Usage 23 MB
WmiPrvSE.exe
Process ID 6856
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\wbem\WmiPrvSE.exe
Memory Usage 18 MB
Peak Memory Usage 18 MB
WmiPrvSE.exe
Process ID 6888
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\wbem\WmiPrvSE.exe
Memory Usage 33 MB
Peak Memory Usage 34 MB
WmiPrvSE.exe
Process ID 16904
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\wbem\WmiPrvSE.exe
Memory Usage 13 MB
Peak Memory Usage 13 MB
WMIRegistrationService.exe
Process ID 4932
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\
mewmiprov.inf_amd64_58a0ea2de06916f7\WMIRegistrationService.exe
Memory Usage 16 MB
Peak Memory Usage 16 MB
WUDFHost.exe
Process ID 1844
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\WUDFHost.exe
Memory Usage 27 MB
Peak Memory Usage 29 MB
WUDFHost.exe
Process ID 1324
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\WUDFHost.exe
Memory Usage 17 MB
Peak Memory Usage 17 MB
Security Options
@wsecedit.dll,-59058 Enabled
Accounts: Administrator account status Disabled
Accounts: Block Microsoft accounts Not Defined
Accounts: Guest account status Disabled
Accounts: Limit local account use of blank passwords to console
logon only Enabled
Accounts: Rename administrator account Administrator
Accounts: Rename guest account Guest
Audit: Audit the access of global system objects Disabled
Audit: Audit the use of Backup and Restore privilege Disabled
Audit: Force audit policy subcategory settings (Windows Vista or
later) to override audit policy category settings Not Defined
Audit: Shut down system immediately if unable to log security
audits Disabled
DCOM: Machine Access Restrictions in Security Descriptor
Definition Language (SDDL) syntax Not Defined
DCOM: Machine Launch Restrictions in Security Descriptor
Definition Language (SDDL) syntax Not Defined
Devices: Allow undock without having to log on Enabled
Devices: Allowed to format and eject removable media Not Defined
Devices: Prevent users from installing printer drivers
Disabled
Devices: Restrict CD-ROM access to locally logged-on user only
Not Defined
Devices: Restrict floppy access to locally logged-on user only
Not Defined
Domain controller: Allow computer account re-use during domain
join Not Defined
Domain controller: Allow server operators to schedule tasksNot
Defined
Domain controller: Allow vulnerable Netlogon secure channel
connections Not Defined
Domain controller: LDAP server channel binding token requirements
Not Defined
Domain controller: LDAP server signing requirements Not Defined
Domain controller: LDAP server signing requirements Enforcement
Not Defined
Domain controller: Refuse machine account password changes Not
Defined
Domain controller: Refuse setting default machine account
password Not Defined
Domain member: Digitally encrypt or sign secure channel data
(always) Enabled
Domain member: Digitally encrypt secure channel data (when
possible) Enabled
Domain member: Digitally sign secure channel data (when possible)
Enabled
Domain member: Disable machine account password changes
Disabled
Domain member: Maximum machine account password age 30 days
Domain member: Require strong (Windows 2000 or later) session key
Enabled
Interactive logon: Display user information when the session is
locked Not Defined
Interactive logon: Do not require CTRL+ALT+DEL Not Defined
Interactive logon: Don't display last signed-in Disabled
Interactive logon: Don't display username at sign-in Not Defined
Interactive logon: Machine account lockout threshold Not Defined
Interactive logon: Machine inactivity limit Not Defined
Interactive logon: Message text for users attempting to log on
Interactive logon: Message title for users attempting to log on
Interactive logon: Number of previous logons to cache (in case
domain controller is not available) 10 logons
Interactive logon: Prompt user to change password before
expiration 5 days
Interactive logon: Require Domain Controller authentication to
unlock workstation Disabled
Interactive logon: Require Windows Hello for Business or smart
card Disabled
Interactive logon: Smart card removal behavior No Action
Microsoft network client: Digitally sign communications (always)
Not Defined
Microsoft network client: Digitally sign communications (if
server agrees) Enabled
Microsoft network client: Send unencrypted password to third-
party SMB servers Disabled
Microsoft network server: Amount of idle time required before
suspending session 15 minutes
Microsoft network server: Attempt S4U2Self to obtain claim
information Not Defined
Microsoft network server: Digitally sign communications (always)
Not Defined
Microsoft network server: Digitally sign communications (if
client agrees) Disabled
Microsoft network server: Disconnect clients when logon hours
expire Enabled
Microsoft network server: Server SPN target name validation level
Not Defined
Minimum password length audit Not Defined
Network access: Allow anonymous SID/Name translation Disabled
Network access: Do not allow anonymous enumeration of SAM
accounts Enabled
Network access: Do not allow anonymous enumeration of SAM
accounts and shares Disabled
Network access: Do not allow storage of passwords and credentials
for network authentication Disabled
Network access: Let Everyone permissions apply to anonymous users
Disabled
Network access: Named Pipes that can be accessed anonymously
Network access: Remotely accessible registry paths System\
CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server
Applications,Software\Microsoft\Windows NT\CurrentVersion
Network access: Remotely accessible registry paths and sub-paths
System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\
Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\
CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\
CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal
Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\
CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\
Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\
SysmonLog
Network access: Restrict anonymous access to Named Pipes and
Shares Enabled
Network access: Restrict clients allowed to make remote calls to
SAM
Network access: Shares that can be accessed anonymously Not
Defined
Network access: Sharing and security model for local accounts
Classic - local users authenticate as themselves
Network security: Allow Local System to use computer identity for
NTLM Not Defined
Network security: Allow LocalSystem NULL session fallback Not
Defined
Network security: Allow PKU2U authentication requests to this
computer to use online identities.
Not Defined
Network security: Configure encryption types allowed for Kerberos
Not Defined
Network security: Force logoff when logon hours expire
Disabled
Network security: LAN Manager authentication level Not Defined
Network security: LDAP client encryption requirements Negotiate
sealing
Network security: LDAP client signing requirements Negotiate
signing
Network security: Minimum session security for NTLM SSP based
(including secure RPC) clients Require 128-bit encryption
Network security: Minimum session security for NTLM SSP based
(including secure RPC) servers Require 128-bit encryption
Network security: Restrict NTLM: Add remote server exceptions for
NTLM authentication Not Defined
Network security: Restrict NTLM: Add server exceptions in this
domain Not Defined
Network security: Restrict NTLM: Audit Incoming NTLM Traffic
Not Defined
Network security: Restrict NTLM: Audit NTLM authentication in
this domain Not Defined
Network security: Restrict NTLM: Incoming NTLM traffic Not
Defined
Network security: Restrict NTLM: NTLM authentication in this
domain Not Defined
Network security: Restrict NTLM: Outgoing NTLM traffic to remote
servers Not Defined
Recovery console: Allow automatic administrative logon
Disabled
Recovery console: Allow floppy copy and access to all drives and
all folders Disabled
Relax minimum password length limits Not Defined
Shutdown: Allow system to be shut down without having to log on
Enabled
Shutdown: Clear virtual memory pagefile Disabled
System cryptography: Force strong key protection for user keys
stored on the computer Not Defined
System cryptography: Use FIPS compliant algorithms for
encryption, hashing, and signing Disabled
System objects: Require case insensitivity for non-Windows
subsystems Enabled
System objects: Strengthen default permissions of internal system
objects (e.g. Symbolic Links) Enabled
System settings: Optional subsystems
System settings: Use Certificate Rules on Windows Executables for
Software Restriction Policies Disabled
User Account Control: Admin Approval Mode for the Built-in
Administrator account Not Defined
User Account Control: Allow UIAccess applications to prompt for
elevation without using the secure desktop Disabled
User Account Control: Behavior of the elevation prompt for
administrators in Admin Approval Mode Prompt for consent for non-Windows
binaries
User Account Control: Behavior of the elevation prompt for
administrators running with Administrator protection Prompt for credentials on the
secure desktop
User Account Control: Behavior of the elevation prompt for
standard users Prompt for credentials
User Account Control: Configure type of Admin Approval ModeLegacy
Admin Approval Mode (Default)
User Account Control: Detect application installations and prompt
for elevation Enabled
User Account Control: Only elevate executables that are signed
and validated Disabled
User Account Control: Only elevate UIAccess applications that are
installed in secure locations Enabled
User Account Control: Run all administrators in Admin Approval
Mode Enabled
User Account Control: Switch to the secure desktop when prompting
for elevation Enabled
User Account Control: Virtualize file and registry write failures
to per-user locations Enabled
Device Tree
ACPI x64-based PC
Microsoft ACPI-Compliant System
ACPI Fixed Feature Button
ACPI Power Button
ACPI Processor Aggregator
ACPI Thermal Zone
ACPI Wake Alarm
ASUS Business System Control Interface
ASUS System Control Interface v3
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Core i5-14500
Intel Innovation Platform Framework
Manager
Intel Power Engine Plug-in
Intel Serial IO GPIO Host Controller -
INTC1085
Microsoft Windows Management Interface
for ACPI
Microsoft Windows Management Interface
for ACPI
Microsoft Windows Management Interface
for ACPI
Microsoft Windows Management Interface
for ACPI
Microsoft Windows Management Interface
for ACPI
Motherboard resources
Motherboard resources
Motherboard resources
Trusted Platform Module 2.0
PCI Express Root Complex
Intel RST VMD Managed
Controller 09AB
Intel RST VMD Managed
Controller 09AB
Intel Ethernet Connection
(17) I219-V
Intel GNA Scoring Accelerator
module
Intel Host Bridge/DRAM
Registers - 4640
Intel Platform Monitoring
Technology Driver
Intel Serial IO I2C Host
Controller - 7A4C
Intel Serial IO I2C Host
Controller - 7A4D
Intel Shared SRAM - 7A27
Intel SMBus - 7A23
Intel SPI (flash) Controller
- 7A24
Motherboard resources
Intel(R) UHD Graphics
770
Generic Monitor
(C2223HE)
Intel Graphics
Command Center
Intel(R) Innovation
Platform Framework Processor Participant
Intel Dynamic
Tuning Technology Device Extension Component
Intel Innovation
Platform Framework Extensible Framework
Intel RST VMD Controller
467F
NVMe WD PC SN5000S
SDEQNSJ-512G-1002
Intel(R) USB 3.20
eXtensible Host Controller - 1.20 (Microsoft)
USB Root Hub
(USB 3.0)
HID-compliant mouse
RtkFilter0
Intel(R) Management
Engine Interface #1
Intel Dynamic
Application Loader Host Interface
Intel iCLS Client
Intel Management
Engine WMI Provider
Intel Wireless
Manageability
Intel(R) PCI Express
Root Port #16 - 7A37
Realtek
8852BE Wireless LAN WiFi 6 PCI-E NIC