Summary
Operating System
Windows 10 Home 64-bit
CPU
Intel Core i3 5005U @ 2.00GHz 42 °C
Broadwell-U 14nm Technology
RAM
8,00GB Single-Channel DDR3 @ 798MHz (11-11-11-28)
Motherboard
HP 80C1 (U3E1)
Graphics
Standard Monitor (1366x768@60Hz)
Intel HD Graphics 5500 (HP)
Storage
931GB Hitachi HGST HTS541010A9E680 (SATA ) 27 °C
298GB Freecom Mobile Drive XXS USB Device (USB (SATA) ) 27 °C
Optical Drives
hp DVDRW GUD1N
Audio
Realtek High Definition Audio
Operating System
Windows 10 Home 64-bit
Computer type: Notebook
Installation Date: 9-8-2018 13:57:28
Serial Number: ****************
Windows Security Center
User Account Control (UAC) Enabled
Notify level 2 - Default
Firewall Enabled
Windows Update
AutoUpdate Not configured
Windows Defender
Windows Defender Enabled
Antivirus
Antivirus Enabled
Display Name Windows Defender
Virus Signature Database Up to date
.NET Frameworks installed
v4.7 Full
v4.7 Client
v3.5 SP1
v3.0 SP2
v2.0 SP2
Internet Explorer
Version 11.165.17134.0
PowerShell
Version 5.1.17134.1
Environment Variables
USERPROFILE C:\Users\Administrator
SystemRoot C:\WINDOWS
User Variables
OneDrive C:\Users\Administrator\OneDrive
Path C:\Users\Administrator\AppData\Local\Microsoft\WindowsApps
TEMP C:\Users\Administrator\AppData\Local\Temp
TMP C:\Users\Administrator\AppData\Local\Temp
Machine Variables
ComSpec C:\WINDOWS\system32\cmd.exe
DriverData C:\Windows\System32\Drivers\DriverData
NUMBER_OF_PROCESSORS 4
OS Windows_NT
Path C:\WINDOWS\system32
C:\WINDOWS
C:\WINDOWS\System32\Wbem
C:\WINDOWS\System32\WindowsPowerShell\v1.0\
C:\WINDOWS\System32\OpenSSH\
PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
PROCESSOR_ARCHITECTURE AMD64
PROCESSOR_IDENTIFIER Intel64 Family 6 Model 61 Stepping 4, GenuineIntel
PROCESSOR_LEVEL 6
PROCESSOR_REVISION 3d04
PSModulePath %ProgramFiles%\WindowsPowerShell\Modules
C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules
TEMP C:\WINDOWS\TEMP
TMP C:\WINDOWS\TEMP
USERNAME SYSTEM
windir C:\WINDOWS
Battery
AC Line Offline
Battery Charge % 39 %
Battery State Unknown status
Remaining Battery Time 1 : 02
Power Profile
Active power scheme Hoge prestaties
Hibernation Enabled
Turn Off Monitor after: (On AC Power) 240 min
Turn Off Monitor after: (On Battery Power) 240 min
Turn Off Hard Disk after: (On AC Power) 20 min
Turn Off Hard Disk after: (On Battery Power) 20 min
Suspend after: (On AC Power) Never
Suspend after: (On Battery Power) Never
Screen saver Disabled
Uptime
Current Session
Current Time 28-8-2018 14:07:17
Current Uptime 9.464 sec (0 d, 02 h, 37 m, 44 s)
Last Boot Time 28-8-2018 11:29:33
Services
Running Adobe Acrobat Update Service
Running Application Information
Running AppX Deployment Service (AppXSVC)
Running Background Intelligent Transfer Service
Running Background Tasks Infrastructure Service
Running Base Filtering Engine
Running Betalingen en NFC/SE Manager
Running Capability Access Manager Service
Running Client License Service (ClipSVC)
Running CNG Key Isolation
Running COM+ Event System
Running Connected User Experiences and Telemetry
Running Contact Data_4a14a
Running CoreMessaging
Running Credential Manager
Running Cryptographic Services
Running Dataverbruik
Running DbxSvc
Running DCOM Server Process Launcher
Running Delivery Optimization
Running Device Association Service
Running Device Install Service
Running Device Setup Manager
Running DHCP Client
Running Diagnostic Policy Service
Running Diagnostic Service Host
Running Diagnostic System Host
Running Distributed Link Tracking Client
Running DNS Client
Running ESIF Upper Framework Service
Running Gebruikerservice voor Connected Devices Platform_4a14a
Running Geolocation Service
Running Host synchroniseren_4a14a
Running Human Interface Device Service
Running IKE and AuthIP IPsec Keying Modules
Running Intel HD Graphics Control Panel Service
Running IP Helper
Running Local Session Manager
Running Network Connected Devices Auto-Setup
Running Network Connection Broker
Running Network List Service
Running Network Location Awareness
Running Network Store Interface Service
Running Peer Networking Identity Manager
Running Plug and Play
Running Portable Device Enumerator Service
Running Power
Running Print Spooler
Running Program Compatibility Assistant Service
Running Realtek Audio Service
Running Remote Access Connection Manager
Running Remote Procedure Call (RPC)
Running Restoro Active Protection
Running RPC Endpoint Mapper
Running Secondary Logon
Running Secure Socket Tunneling Protocol Service
Running Security Accounts Manager
Running Security Center
Running Server
Running Service Platform voor verbonden apparaten
Running Service voor Windows-licentiebeheer
Running Service Windows Defender-beveiligingscentrum
Running Shell Hardware Detection
Running SSDP Discovery
Running State Repository Service
Running Storage Service
Running Superfetch
Running SynTPEnh Caller Service
Running Systeemservice voor Windows Push Notifications
Running System Event Notification Service
Running System Events Broker
Running System Guard Runtime Monitor Broker
Running Task Scheduler
Running TCP/IP NetBIOS Helper
Running Themes
Running Time Broker
Running Touch Keyboard and Handwriting Panel Service
Running Update Orchestrator Service
Running User Data Access_4a14a
Running User Data Storage_4a14a
Running User Manager
Running User Profile Service
Running Webaccountbeheer
Running Windows Audio
Running Windows Audio Endpoint Builder
Running Windows Connection Manager
Running Windows Defender Antivirus Network Inspection Service
Running Windows Defender Antivirus Service
Running Windows Defender Firewall
Running Windows Event Log
Running Windows Font Cache Service
Running Windows Management Instrumentation
Running Windows Presentation Foundation Font Cache 3.0.0.0
Running Windows Push Notifications User Service_4a14a
Running Windows Search
Running WinHTTP Web Proxy Auto-Discovery Service
Running WLAN AutoConfig
Running WMI Performance Adapter
Running Workstation
Stopped ActiveX Installer (AxInstSV)
Stopped AllJoyn Router Service
Stopped App Readiness
Stopped Application Identity
Stopped Application Layer Gateway Service
Stopped AVCTP-service
Stopped Bitdefender Vpn Service
Stopped BitLocker Drive Encryption Service
Stopped Block Level Backup Engine Service
Stopped Bluetooth Audio Gateway-service
Stopped Bluetooth Support Service
Stopped Certificate Propagation
Stopped COM+ System Application
Stopped Computer Browser
Stopped Configuratieservice voor IP-vertaling
Stopped Data Sharing Service
Stopped DevicePicker_4a14a
Stopped DevicesFlow_4a14a
Stopped DevQuery Background Discovery Broker
Stopped Diagnostic Execution Service
Stopped Distributed Transaction Coordinator
Stopped dmwappushsvc
Stopped Downloaded Maps Manager
Stopped Dropbox-update-service (dbupdate)
Stopped Dropbox-update-service (dbupdatem)
Stopped Encrypting File System (EFS)
Stopped Enterprise App Management Service
Stopped Extensible Authentication Protocol
Stopped Fax
Stopped File History Service
Stopped Function Discovery Provider Host
Stopped Function Discovery Resource Publication
Stopped Games opslaan op Xbox Live
Stopped Gebruikersservice GameDVR en uitzending_4a14a
Stopped Google Update-service (gupdate)
Stopped Google Update-service (gupdatem)
Stopped GraphicsPerfSvc
Stopped Group Policy Client
Stopped HV-hostservice
Stopped Hyper-V Data Exchange Service
Stopped Hyper-V Guest Service Interface
Stopped Hyper-V Guest Shutdown Service
Stopped Hyper-V Heartbeat Service
Stopped Hyper-V PowerShell Direct Service
Stopped Hyper-V Remote Desktop Virtualization Service
Stopped Hyper-V Time Synchronization Service
Stopped Hyper-V Volume Shadow Copy Requestor
Stopped Infrared Monitor-service
Stopped Ingesloten modus
Stopped Intel Content Protection HECI Service
Stopped Internet Connection Sharing (ICS)
Stopped IPsec Policy Agent
Stopped KtmRm for Distributed Transaction Coordinator
Stopped Link-Layer Topology Discovery Mapper
Stopped Lokale profielassistentservice
Stopped MessagingService_4a14a
Stopped Microsoft Account Sign-in Assistant
Stopped Microsoft iSCSI Initiator Service
Stopped Microsoft Passport
Stopped Microsoft Passport Container
Stopped Microsoft Software Shadow Copy Provider
Stopped Microsoft Storage Spaces SMP
Stopped Microsoft Store-installatieservice
Stopped Microsoft Windows SMS Router-service.
Stopped Microsoft Diagnostics Hub Standard Collector-service
Stopped Mozilla Maintenance Service
Stopped Natuurlijke authenticatie
Stopped Net.Tcp Port Sharing Service
Stopped Netlogon
Stopped Netwerkservice van Xbox Live
Stopped Network Connections
Stopped Network Connectivity Assistant
Stopped Network Setup Service
Stopped Ondersteuningsservice voor Bluetooth-gebruikers_4a14a
Stopped OpenSSH Authentication Agent
Stopped Optimize drives
Stopped Ouderlijk toezicht
Start pending Peer Name Resolution Protocol
Stopped Peer Networking Grouping
Stopped Performance Counter DLL Host
Stopped Performance Logs & Alerts
Stopped Phone Service
Stopped PNRP Machine Name Publication Service
Stopped Printer Extensions and Notifications
Stopped PrintWorkflow_4a14a
Stopped Problem Reports and Solutions Control Panel Support
Stopped Quality Windows Audio Video Experience
Stopped Radiobeheerservice
Stopped Registratieservice voor Apparaatbeheer
Stopped Remote Access Auto Connection Manager
Stopped Remote Desktop Configuration
Stopped Remote Desktop Services
Stopped Remote Desktop Services UserMode Port Redirector
Stopped Remote Procedure Call (RPC) Locator
Stopped Remote Registry
Stopped Retaildemoservice
Stopped Routing and Remote Access
Stopped Sensor Data Service
Stopped Sensor Monitoring Service
Stopped Sensor Service
Stopped Service Language Experience
Stopped Shared PC Account Manager
Stopped Smart Card
Stopped Smart Card Device Enumeration Service
Stopped Smart Card Removal Policy
Stopped SNMP Trap
Stopped Software Protection
Stopped Spatial Data Service
Stopped Spot Verifier
Stopped Still Image Acquisition Events
Stopped Storage Tiers Management
Stopped Telephony
Stopped Updater van automatische tijdzone
Stopped UPnP Device Host
Stopped Virtual Disk
Stopped Volume Shadow Copy
Stopped Volumetric Audio Compositor-service
Stopped WalletService
Stopped WarpJITSvc
Stopped WebClient
Stopped Wi-Fi Direct Services Connection Manager-service
Stopped Windows Back-up
Stopped Windows Biometric Service
Stopped Windows Camera Frame Server
Stopped Windows Connect Now - Config Registrar
Stopped Windows Encryption Provider Host Service
Stopped Windows Error Reporting Service
Stopped Windows Event Collector
Stopped Windows Image Acquisition (WIA)
Stopped Windows Insider-service
Stopped Windows Installer
Stopped Windows Media Player Network Sharing Service
Stopped Windows Mobile Hotspot Service
Stopped Windows Modules Installer
Stopped Windows Perception Service
Stopped Windows PushToInstall-service
Stopped Windows Remote Management (WS-Management)
Stopped Windows Time
Stopped Windows Update
Stopped Windows Update Medic Service
Stopped Wired AutoConfig
Stopped Work Folders
Stopped WWAN AutoConfig
Stopped Xbox Accessory Management Service
Stopped Xbox Game Monitoring
Stopped Xbox Live-verificatiebeheer
TimeZone
TimeZone GMT +1:00 Hours
Language Nederlands (Nederland)
Location Nederland
Format Nederlands (Nederland)
Currency €
Date Format d-M-yyyy
Time Format HH:mm:ss
Scheduler
28-8-2018 14:11; GoogleUpdateTaskMachineUA
28-8-2018 14:46; DropboxUpdateTaskMachineUA
28-8-2018 15:00; Adobe Acrobat Update Task
28-8-2018 16:46; DropboxUpdateTaskMachineCore
28-8-2018 18:11; GoogleUpdateTaskMachineCore
29-8-2018 13:30; OneDrive Standalone Update Task-S-1-5-21-830304158-2565467449-2561011865-1002
29-8-2018 19:42; OneDrive Standalone Update Task-S-1-5-21-830304158-2565467449-2561011865-500
30-8-2018 02:42; OneDrive Standalone Update Task-S-1-5-21-830304158-2565467449-2561011865-1001
CCleanerSkipUAC
Hotfixes
Installed
28-8-2018 Definitie-update voor Windows Defender Antivirus - KB2267602 (definitie 1.275.307.0)
Installeer deze update om de definitiebestanden te herzien die
worden gebruikt voor het detecteren van virussen, spyware en
andere mogelijk ongewenste software. Wanneer u dit item hebt
geïnstalleerd, kan het niet meer worden verwijderd.
25-8-2018 Definitie-update voor Windows Defender Antivirus - KB2267602 (definitie 1.275.112.0)
Installeer deze update om de definitiebestanden te herzien die
worden gebruikt voor het detecteren van virussen, spyware en
andere mogelijk ongewenste software. Wanneer u dit item hebt
geïnstalleerd, kan het niet meer worden verwijderd.
16-8-2018 2018-08 Beveiligingsupdate voor Adobe Flash Player voor op Windows 10 Version 1803 voor x64 gebaseerde systemen (KB4343902)
Er is een beveiligingsprobleem vastgesteld bij een softwareproduct
van Microsoft dat invloed kan hebben op uw systeem. Installeer
deze update van Microsoft om uw systeem hiertegen te beveiligen.
Zie voor een complete lijst met problemen die in deze update
zijn opgenomen het bijbehorende Microsoft Knowledge Base-artikel.
Nadat u deze update hebt geïnstalleerd, moet u de computer wellicht
opnieuw opstarten.
10-8-2018 KB890830: Windows-programma voor het verwijderen van schadelijke software voor x64-systemen- juli 2018
Nadat u dit hulpprogramma hebt gedownload, wordt het één keer
uitgevoerd om te controleren of uw computer is geïnfecteerd met
bepaalde soorten schadelijke software (inclusief Blaster, Sasser
en Mydoom). Eventuele infecties kunt u tevens met dit hulpprogramma
verwijderen. Wanneer een infectie wordt aangetroffen, wordt de
volgende keer dat u uw computer opstart een statusrapport weergegeven.
Er is iedere maand een nieuwe versie van dit hulpprogramma beschikbaar.
Als u het hulpprogramma handmatig op uw computer wilt uitvoeren,
kunt u een exemplaar downloaden via het Microsoft Downloadcentrum
of een onlineversie uitvoeren via microsoft.com. Dit hulpprogramma
is geen vervanging voor antivirussoftware. U moet een antivirusproduct
gebruiken om uw computer hiertegen te beveiligen.
Not Installed
25-8-2018 Definitie-update voor Windows Defender Antivirus - KB2267602 (definitie 1.275.144.0)
Installation Status Failed
Installeer deze update om de definitiebestanden te herzien die
worden gebruikt voor het detecteren van virussen, spyware en
andere mogelijk ongewenste software. Wanneer u dit item hebt
geïnstalleerd, kan het niet meer worden verwijderd.
25-8-2018 Definitie-update voor Windows Defender Antivirus - KB2267602 (definitie 1.275.138.0)
Installation Status Failed
Installeer deze update om de definitiebestanden te herzien die
worden gebruikt voor het detecteren van virussen, spyware en
andere mogelijk ongewenste software. Wanneer u dit item hebt
geïnstalleerd, kan het niet meer worden verwijderd.
25-8-2018 Update voor Windows Defender Antivirus anti-malwareplatform - KB4052623 (versie 4.18.1807.18075)
Installation Status Failed
Met dit pakket worden de onderdelen van het Windows Defender
Antivirus anti-malwareplatform op de computer van de gebruiker
bijgewerkt.
25-8-2018 Update voor Windows Defender Antivirus anti-malwareplatform - KB4052623 (versie 4.18.1807.18075)
Installation Status Failed
Met dit pakket worden de onderdelen van het Windows Defender
Antivirus anti-malwareplatform op de computer van de gebruiker
bijgewerkt.
24-8-2018 Definitie-update voor Windows Defender Antivirus - KB2267602 (definitie 1.275.112.0)
Installation Status Failed
Installeer deze update om de definitiebestanden te herzien die
worden gebruikt voor het detecteren van virussen, spyware en
andere mogelijk ongewenste software. Wanneer u dit item hebt
geïnstalleerd, kan het niet meer worden verwijderd.
24-8-2018 Definitie-update voor Windows Defender Antivirus - KB2267602 (definitie 1.275.112.0)
Installation Status Failed
Installeer deze update om de definitiebestanden te herzien die
worden gebruikt voor het detecteren van virussen, spyware en
andere mogelijk ongewenste software. Wanneer u dit item hebt
geïnstalleerd, kan het niet meer worden verwijderd.
24-8-2018 Definitie-update voor Windows Defender Antivirus - KB2267602 (definitie 1.275.112.0)
Installation Status Failed
Installeer deze update om de definitiebestanden te herzien die
worden gebruikt voor het detecteren van virussen, spyware en
andere mogelijk ongewenste software. Wanneer u dit item hebt
geïnstalleerd, kan het niet meer worden verwijderd.
24-8-2018 Definitie-update voor Windows Defender Antivirus - KB2267602 (definitie 1.275.94.0)
Installation Status Failed
Installeer deze update om de definitiebestanden te herzien die
worden gebruikt voor het detecteren van virussen, spyware en
andere mogelijk ongewenste software. Wanneer u dit item hebt
geïnstalleerd, kan het niet meer worden verwijderd.
24-8-2018 2018-08 Cumulatieve update voor op Windows 10 Version 1803 for x64 gebaseerde systemen (KB4343909)
Installation Status Failed
Installeer deze update om problemen in Windows op te lossen.
Zie voor een complete lijst met problemen die in deze update
zijn opgenomen het bijbehorende Microsoft Knowledge Base-artikel
voor meer informatie. Wanneer u deze update hebt geïnstalleerd,
moet u de computer mogelijk opnieuw opstarten.
24-8-2018 Definitie-update voor Windows Defender Antivirus - KB2267602 (definitie 1.273.1826.0)
Installation Status Failed
Installeer deze update om de definitiebestanden te herzien die
worden gebruikt voor het detecteren van virussen, spyware en
andere mogelijk ongewenste software. Wanneer u dit item hebt
geïnstalleerd, kan het niet meer worden verwijderd.
19-8-2018 Definitie-update voor Windows Defender Antivirus - KB2267602 (definitie 1.273.1655.0)
Installation Status Failed
Installeer deze update om de definitiebestanden te herzien die
worden gebruikt voor het detecteren van virussen, spyware en
andere mogelijk ongewenste software. Wanneer u dit item hebt
geïnstalleerd, kan het niet meer worden verwijderd.
17-8-2018 Definitie-update voor Windows Defender Antivirus - KB2267602 (definitie 1.273.1565.0)
Installation Status Failed
Installeer deze update om de definitiebestanden te herzien die
worden gebruikt voor het detecteren van virussen, spyware en
andere mogelijk ongewenste software. Wanneer u dit item hebt
geïnstalleerd, kan het niet meer worden verwijderd.
15-8-2018 2018-08 Cumulatieve update voor op Windows 10 Version 1803 for x64 gebaseerde systemen (KB4343909)
Installation Status Failed
Installeer deze update om problemen in Windows op te lossen.
Zie voor een complete lijst met problemen die in deze update
zijn opgenomen het bijbehorende Microsoft Knowledge Base-artikel
voor meer informatie. Wanneer u deze update hebt geïnstalleerd,
moet u de computer mogelijk opnieuw opstarten.
15-8-2018 9NBLGGH1CQ7L-NORDCURRENT.COOKINGFEVER
Installation Status Failed
9NBLGGH1CQ7L-1152921505688048416
15-8-2018 9NBLGGH1CQ7L-NORDCURRENT.COOKINGFEVER
Installation Status Failed
9NBLGGH1CQ7L-1152921505688048416
14-8-2018 9NBLGGH1CQ7L-NORDCURRENT.COOKINGFEVER
Installation Status Failed
9NBLGGH1CQ7L-1152921505688048416
System Folders
Application Data C:\ProgramData
Cookies C:\Users\Administrator\AppData\Local\Microsoft\Windows\INetCookies
Desktop C:\Users\Administrator\Desktop
Documents C:\Users\Public\Documents
Fonts C:\WINDOWS\Fonts
Global Favorites C:\Users\Administrator\Favorites
Internet History C:\Users\Administrator\AppData\Local\Microsoft\Windows\History
Local Application Data C:\Users\Administrator\AppData\Local
Music C:\Users\Public\Music
Path for burning CD C:\Users\Administrator\AppData\Local\Microsoft\Windows\Burn\Burn
Physical Desktop C:\Users\Administrator\Desktop
Pictures C:\Users\Public\Pictures
Program Files C:\Program Files
Public Desktop C:\Users\Public\Desktop
Start Menu C:\ProgramData\Microsoft\Windows\Start Menu
Start Menu Programs C:\ProgramData\Microsoft\Windows\Start Menu\Programs
Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Templates C:\ProgramData\Microsoft\Windows\Templates
Temporary Internet Files C:\Users\Administrator\AppData\Local\Microsoft\Windows\INetCache
User Favorites C:\Users\Administrator\Favorites
Videos C:\Users\Public\Videos
Windows Directory C:\WINDOWS
Windows/System C:\WINDOWS\system32
Process List
ApplicationFrameHost.exe
Process ID 3108
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\ApplicationFrameHost.exe
Memory Usage 29 MB
Peak Memory Usage 30 MB
armsvc.exe
Process ID 3412
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
Memory Usage 6.40 MB
Peak Memory Usage 6.66 MB
audiodg.exe
Process ID 6932
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\audiodg.exe
Memory Usage 20 MB
Peak Memory Usage 36 MB
backgroundTaskHost.exe
Process ID 9940
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\backgroundTaskHost.exe
Memory Usage 22 MB
Peak Memory Usage 24 MB
browser_broker.exe
Process ID 9472
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\browser_broker.exe
Memory Usage 8.59 MB
Peak Memory Usage 8.81 MB
conhost.exe
Process ID 2940
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\conhost.exe
Memory Usage 7.88 MB
Peak Memory Usage 9.11 MB
csrss.exe
Process ID 704
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\csrss.exe
Memory Usage 5.19 MB
Peak Memory Usage 13 MB
csrss.exe
Process ID 604
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\csrss.exe
Memory Usage 4.92 MB
Peak Memory Usage 5.12 MB
ctfmon.exe
Process ID 5744
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\ctfmon.exe
Memory Usage 15 MB
Peak Memory Usage 15 MB
dasHost.exe
Process ID 5172
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\dasHost.exe
Memory Usage 8.16 MB
Peak Memory Usage 8.58 MB
DbxSvc.exe
Process ID 3576
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DbxSvc.exe
Memory Usage 6.23 MB
Peak Memory Usage 6.42 MB
dllhost.exe
Process ID 6768
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\dllhost.exe
Memory Usage 7.29 MB
Peak Memory Usage 11 MB
dllhost.exe
Process ID 7000
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\dllhost.exe
Memory Usage 9.02 MB
Peak Memory Usage 9.96 MB
DropboxUpdate.exe
Process ID 1492
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Memory Usage 2.20 MB
Peak Memory Usage 9.21 MB
dwm.exe
Process ID 1184
User DWM-1
Domain Window Manager
Path C:\Windows\System32\dwm.exe
Memory Usage 63 MB
Peak Memory Usage 77 MB
esif_assist_64.exe
Process ID 4344
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\Temp\DPTF\esif_assist_64.exe
Memory Usage 4.81 MB
Peak Memory Usage 4.97 MB
esif_uf.exe
Process ID 3456
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\SysWOW64\esif_uf.exe
Memory Usage 6.73 MB
Peak Memory Usage 7.00 MB
explorer.exe
Process ID 9684
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\explorer.exe
Memory Usage 96 MB
Peak Memory Usage 100 MB
fontdrvhost.exe
Process ID 920
User UMFD-0
Domain Font Driver Host
Path C:\Windows\System32\fontdrvhost.exe
Memory Usage 3.60 MB
Peak Memory Usage 3.93 MB
fontdrvhost.exe
Process ID 544
User UMFD-1
Domain Font Driver Host
Path C:\Windows\System32\fontdrvhost.exe
Memory Usage 4.87 MB
Peak Memory Usage 6.52 MB
HDSentinel.exe
Process ID 2368
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe
Memory Usage 18 MB
Peak Memory Usage 37 MB
igfxCUIService.exe
Process ID 1992
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\igfxCUIService.exe
Memory Usage 8.18 MB
Peak Memory Usage 8.41 MB
igfxEM.exe
Process ID 5216
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\igfxEM.exe
Memory Usage 12 MB
Peak Memory Usage 12 MB
igfxHK.exe
Process ID 3236
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\igfxHK.exe
Memory Usage 8.48 MB
Peak Memory Usage 8.68 MB
lsass.exe
Process ID 784
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\lsass.exe
Memory Usage 16 MB
Peak Memory Usage 17 MB
Memory Compression
Process ID 1784
User SYSTEM
Domain NT AUTHORITY
Memory Usage 2.12 MB
Peak Memory Usage 42 MB
Microsoft.Photos.exe
Process ID 9080
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18061.17410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
Memory Usage 29 MB
Peak Memory Usage 57 MB
MicrosoftEdge.exe
Process ID 8404
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
Memory Usage 57 MB
Peak Memory Usage 62 MB
MicrosoftEdgeCP.exe
Process ID 1176
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
Memory Usage 22 MB
Peak Memory Usage 23 MB
MicrosoftEdgeCP.exe
Process ID 8440
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
Memory Usage 24 MB
Peak Memory Usage 25 MB
MsMpEng.exe
Process ID 3420
User SYSTEM
Domain NT AUTHORITY
Path C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1807.18075-0\MsMpEng.exe
Memory Usage 113 MB
Peak Memory Usage 587 MB
NisSrv.exe
Process ID 4988
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1807.18075-0\NisSrv.exe
Memory Usage 9.25 MB
Peak Memory Usage 9.55 MB
OneDrive.exe
Process ID 8148
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe
Memory Usage 62 MB
Peak Memory Usage 75 MB
PresentationFontCache.exe
Process ID 2932
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
Memory Usage 18 MB
Peak Memory Usage 19 MB
RAVBg64.exe
Process ID 2848
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
Memory Usage 15 MB
Peak Memory Usage 15 MB
Registry
Process ID 96
User SYSTEM
Domain NT AUTHORITY
Memory Usage 4.55 MB
Peak Memory Usage 71 MB
RestoroProtection.exe
Process ID 3828
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Restoro\bin\RestoroProtection.exe
Memory Usage 69 MB
Peak Memory Usage 80 MB
RtkAudioService64.exe
Process ID 2340
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
Memory Usage 8.17 MB
Peak Memory Usage 8.60 MB
RuntimeBroker.exe
Process ID 4600
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 20 MB
Peak Memory Usage 27 MB
RuntimeBroker.exe
Process ID 9672
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 6.53 MB
Peak Memory Usage 12 MB
RuntimeBroker.exe
Process ID 6180
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 12 MB
Peak Memory Usage 18 MB
RuntimeBroker.exe
Process ID 5244
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 21 MB
Peak Memory Usage 31 MB
RuntimeBroker.exe
Process ID 8504
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 18 MB
Peak Memory Usage 19 MB
RuntimeBroker.exe
Process ID 3612
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 32 MB
Peak Memory Usage 38 MB
SearchIndexer.exe
Process ID 1468
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SearchIndexer.exe
Memory Usage 33 MB
Peak Memory Usage 36 MB
SearchUI.exe
Process ID 7384
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
Memory Usage 102 MB
Peak Memory Usage 119 MB
SecurityHealthService.exe
Process ID 3440
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SecurityHealthService.exe
Memory Usage 12 MB
Peak Memory Usage 14 MB
services.exe
Process ID 764
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\services.exe
Memory Usage 10 MB
Peak Memory Usage 11 MB
SgrmBroker.exe
Process ID 6960
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SgrmBroker.exe
Memory Usage 4.66 MB
Peak Memory Usage 4.95 MB
ShellExperienceHost.exe
Process ID 356
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
Memory Usage 79 MB
Peak Memory Usage 83 MB
sihost.exe
Process ID 1324
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\sihost.exe
Memory Usage 30 MB
Peak Memory Usage 31 MB
smartscreen.exe
Process ID 5272
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\smartscreen.exe
Memory Usage 20 MB
Peak Memory Usage 20 MB
smss.exe
Process ID 424
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\smss.exe
Memory Usage 1.11 MB
Peak Memory Usage 1.15 MB
Speccy64.exe
Process ID 3112
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Program Files\Speccy\Speccy64.exe
Memory Usage 25 MB
Peak Memory Usage 25 MB
spoolsv.exe
Process ID 3060
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\spoolsv.exe
Memory Usage 14 MB
Peak Memory Usage 14 MB
svchost.exe
Process ID 2464
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 2472
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.20 MB
Peak Memory Usage 6.28 MB
svchost.exe
Process ID 2636
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.01 MB
Peak Memory Usage 7.55 MB
svchost.exe
Process ID 2776
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 16 MB
Peak Memory Usage 16 MB
svchost.exe
Process ID 2916
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 2112
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.68 MB
Peak Memory Usage 7.82 MB
svchost.exe
Process ID 3372
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 3380
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.17 MB
Peak Memory Usage 7.46 MB
svchost.exe
Process ID 3388
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 24 MB
Peak Memory Usage 46 MB
svchost.exe
Process ID 3396
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.36 MB
Peak Memory Usage 5.53 MB
svchost.exe
Process ID 3464
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 3492
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 31 MB
Peak Memory Usage 48 MB
svchost.exe
Process ID 3500
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 18 MB
Peak Memory Usage 20 MB
svchost.exe
Process ID 3508
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.26 MB
Peak Memory Usage 6.49 MB
svchost.exe
Process ID 3600
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.80 MB
Peak Memory Usage 5.93 MB
svchost.exe
Process ID 3848
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 10 MB
Peak Memory Usage 10 MB
svchost.exe
Process ID 2004
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 4064
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 3200
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.77 MB
Peak Memory Usage 5.93 MB
svchost.exe
Process ID 2052
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\svchost.exe
Memory Usage 15 MB
Peak Memory Usage 16 MB
svchost.exe
Process ID 2208
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.26 MB
Peak Memory Usage 5.38 MB
svchost.exe
Process ID 4868
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.17 MB
Peak Memory Usage 8.46 MB
svchost.exe
Process ID 3556
User Administrator
Domain LAPTOP-PS9UJATI
Path C:\Windows\System32\svchost.exe
Memory Usage 35 MB
Peak Memory Usage 36 MB
svchost.exe
Process ID 5372
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.98 MB
Peak Memory Usage 7.21 MB
svchost.exe
Process ID 5516
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.28 MB
Peak Memory Usage 7.60 MB
svchost.exe
Process ID 5820
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 14 MB
Peak Memory Usage 14 MB
svchost.exe
Process ID 900
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 3.74 MB
Peak Memory Usage 3.88 MB
svchost.exe
Process ID 952
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 30 MB
Peak Memory Usage 31 MB
svchost.exe
Process ID 1108
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 13 MB