System Diagnostics Report
Computer:MR_PRYOR-PC
Collected:Wednesday, April 20, 2011 1:24:17 PM
Duration:61 Seconds
Diagnostic Results
Warnings
Informational
Symptom:
The Security Center has not recorded an anti-virus product.
Cause:The Security Center is unable to identify an active anti-virus application. Either there is no anti-virus product installed or it is not recognized.
Resolution:1. Verify that an anti-virus product is installed.
2. If an anti-virus product is installed and functioning configure Security Center to stop monitoring anti-virus status.
Related:Anti-virus

Symptom:
The Security Center reports that User Access Control is disabled.
Cause:User Access Control is disabled. It is highly recommended that you run Windows with User Access Control enabled.
Resolution:Enable User Access Control using the Security Center.
Related:User Acess Control

Severity:
Information
Warning:The average disk queue length is 3. The disk may be at its maximum transfer capacity due to throughput and disk seeks
Related:Disk Diagnosis
Basic System Checks
TestsResultDescription
OS Checks
Passed
Checks for attributes of the operating system
Test GroupsTestsFailedDescription
OS Version Check10Passed
Disk Checks
Passed
Checks for disk status
Test GroupsTestsFailedDescription
SMART Predict Failure Check10Passed
Logical Disk Dirty Bit Check10Passed
Security Center Tests
Failed
Checks for state of Security Center related information.
Test GroupsTestsFailedDescription
User Account Control Enabled Check11Failed
Windows Update Enabled Check10Passed
System Service Checks
Passed
Checks for state of system services
Test GroupsTestsFailedDescription
Abnormally Terminated Services Check10Passed
Workstation Service Check10Passed
Hardware Device and Driver Checks
Passed
Survey of Windows Management Infrastructure supported devices.
Test GroupsTestsFailedDescription
Controller Device Configured Fail Count190Controller devices.
Controller Device Status Fail Count190Controller devices.
Cooling Configured Fail Count00Cooling devices.
Cooling Status Fail Count00Cooling devices.
Input Configured Fail Count30Input devices.
Input Status Fail Count30Input devices.
Memory Device Configured Fail Count990Memory devices.
Memory Device Status Fail Count990Memory devices.
Motherboard Device Configured Fail Count180Motherboard devices.
Motherboard Device Status Fail Count180Motherboard devices.
Network Configured Fail Count160Network devices.
Network Status Fail Count160Network devices.
Port Device Configured Fail Count670Port devices.
Port Device Status Fail Count670Port devices.
Power Device Configured Fail Count10Power devices.
Power Device Status Fail Count10Power devices.
Printing Device Configured Fail Count40Printing devices.
Printing Device Status Fail Count40Printing devices.
Storage Device Configured Fail Count30Storage devices.
Storage Device Status Fail Count30Storage devices.
Video Device Configured Fail Count40Video devices.
Video Device Status Fail Count40Video devices.
PlugAndPlay Device Configured Fail Count1530PlugAndPlay devices.
PlugAndPlay Device Status Fail Count1530PlugAndPlay devices.
Performance
Resource Overview
ComponentStatusUtilizationDetails
CPU
Normal
46 %Normal CPU load.
Network
Idle
0 %Busiest network adapter is less than 15%.
   
Disk
Normal
244 /secDisk I/O is between 100 and 500 (read/write) per second on disk 0.
   
Memory
Normal
71 %549 MB Available.
Software Configuration
OS Checks
Operating System InformationTop: of  2 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_OperatingSystem0x0
Returned Objects
Win32_OperatingSystem=@
PropertyValue
BootDevice\Device\HarddiskVolume1
BuildNumber7601
BuildTypeMultiprocessor Free
CaptionMicrosoft Windows 7 Home Premium
CodeSet1252
CountryCode1
CSCreationClassNameWin32_ComputerSystem
CSDVersionService Pack 1
CSNameMR_PRYOR-PC
CurrentTimeZone-420
DataExecutionPrevention_32BitApplicationsTrue
DataExecutionPrevention_AvailableTrue
DataExecutionPrevention_DriversTrue
DataExecutionPrevention_SupportPolicy2
DebugFalse
Description
Distributed0
EncryptionLevel256
ForegroundApplicationBoost2
FreePhysicalMemory576924
FreeSpaceInPagingFiles1840012
FreeVirtualMemory2429604
InstallDate20110220235450.000000-480
LastBootUpTime20110420131136.375199-420
LocalDateTime20110420132426.615000-420
Locale0409
ManufacturerMicrosoft Corporation
MaxNumberOfProcesses-1
MaxProcessMemorySize8589934464
NameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
NumberOfLicensedUsers0
NumberOfProcesses67
NumberOfUsers2
OperatingSystemSKU3
Organization
OSArchitecture64-bit
OSLanguage1033
OSProductSuite768
OSType18
PrimaryTrue
ProductType1
RegisteredUserMr_Pryor
SerialNumber00359-OEM-8992687-00249
ServicePackMajorVersion1
ServicePackMinorVersion0
SizeStoredInPagingFiles1958772
StatusOK
SuiteMask784
SystemDevice\Device\HarddiskVolume1
SystemDirectoryC:\Windows\system32
SystemDriveC:
TotalVirtualMemorySize3917544
TotalVisibleMemorySize1958772
Version6.1.7601
WindowsDirectoryC:\Windows
root\cimv2:SELECT * FROM Win32_ComputerSystem0x0
Returned Objects
Win32_ComputerSystem.Name="MR_PRYOR-PC"
PropertyValue
AdminPasswordStatus0
AutomaticManagedPagefileTrue
AutomaticResetBootOptionTrue
AutomaticResetCapabilityTrue
BootROMSupportedTrue
BootupStateNormal boot
CaptionMR_PRYOR-PC
ChassisBootupState2
CurrentTimeZone-420
DaylightInEffectTrue
DescriptionAT/AT COMPATIBLE
DNSHostNameMr_Pryor-PC
DomainWORKGROUP
DomainRole0
EnableDaylightSavingsTimeTrue
FrontPanelResetStatus0
InfraredSupportedFalse
KeyboardPasswordStatus0
ManufacturerLENOVO
Model28472JU
NameMR_PRYOR-PC
NetworkServerModeEnabledTrue
NumberOfLogicalProcessors2
NumberOfProcessors1
PartOfDomainFalse
PauseAfterReset-1
PCSystemType2
PowerOnPasswordStatus0
PowerState0
PowerSupplyState2
PrimaryOwnerNameMr_Pryor
ResetCapability1
ResetCount-1
ResetLimit-1
StatusOK
SystemTypex64-based PC
ThermalState2
TotalPhysicalMemory2005782528
UserNameMr_Pryor-PC\Mr_Pryor
WakeUpType12
WorkgroupWORKGROUP
Security Center Information
Anti-Spyware InformationTop: of  1 
QueryQuery Result
root\SecurityCenter:SELECT * FROM AntiSpywareProduct0x0
Returned Objects
Anti-Virus InformationTop: of  1 
QueryQuery Result
root\SecurityCenter:SELECT * FROM AntiVirusProduct
   
0x0
Returned Objects
Firewall InformationTop: of  1 
QueryQuery Result
root\SecurityCenter:SELECT * FROM FirewallProduct0x0
Returned Objects
User Account Control SettingsTop: of  1 
QueryResult
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA0x0
KeyValueTypeResult
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA0
   
40x0
Windows Update SettingsTop: of  2 
QueryResult
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\\0x0
KeyValueTypeResult
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\SusClientId0a2f580e-d406-4914-8d7a-b14d81a5f40e10x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\SusClientIdValidationBgIoARYaIAAgACAAIAAgAFcARAAtAFcAWABWADAARQBBADkAQwBDAEoAVwAxAAYAJp68zUIxAFoATgBLAEwAMAAxADQAMwBaAFgATgBvAHQAIABBAHYAYQBpAGwAYQBiAGwAZQA=30x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\LastRestorePointSetTime2011-04-18 03:27:2510x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\NextSqmReportTime2011-04-21 06:44:0310x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\FeaturedUpdatesNotificationSeqNum700640x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\FeaturedUpdatesNotificationSeqNumGenTime2011-02-21 07:47:0410x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\ElevateNonAdmins140x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\AUOptions440x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\ScheduledInstallDay040x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\ScheduledInstallTime340x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\IncludeRecommendedUpdates140x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\NextDetectionTime2011-04-20 22:08:5510x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\NextFeaturedUpdatesNotificationTime2011-02-21 07:54:4310x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\ScheduledInstallDate2011-04-21 10:00:0010x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\BalloonTime2011-04-18 03:27:2710x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\BalloonType940x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\ActionCenterNotificationCount440x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\ActionCenterLastPossibleRestartNotification2011-03-09 11:00:0010x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Detect\LastSuccessTime2011-04-20 03:58:1810x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Detect\LastError040x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Download\LastSuccessTime2011-04-20 04:00:3510x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Download\LastError040x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\LastSuccessTime2011-04-20 04:00:4810x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\LastError040x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\UAS\UpdateCount040x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Reporting\BatchFlushAge3062140x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Reporting\SamplingValue226340x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Services\Pending\ValidatedPreWsus3RegistrationRequests140x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Setup\SelfUpdateStatus040x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Setup\SelfupdateUnmanaged040x0
HKLM\SOFTWARE\Policies\Windows\WindowsUpdate\\0x80070002
KeyValueTypeResult
System Services
System ServicesTop: of  1 
QueryQuery Result
root\cimv2:SELECT __Relpath, Name, Caption, Description, DisplayName, PathName, Started, ExitCode, State, ServiceSpecificExitCode FROM Win32_Service0x0
Returned Objects
Win32_Service.Name="AeLookupSvc"
PropertyValue
CaptionApplication Experience
DescriptionProcesses application compatibility cache requests for applications as they are launched
DisplayNameApplication Experience
ExitCode0
NameAeLookupSvc
PathNameC:\Windows\system32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="Akamai"
PropertyValue
CaptionAkamai NetSession Interface
DescriptionProvides networking protocol and file transfer technologies. If the service is stopped, those applications that depend on the service may fail to transfer files or otherwise function properly.
DisplayNameAkamai NetSession Interface
ExitCode0
NameAkamai
PathNameC:\Windows\System32\svchost.exe -k Akamai
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="ALG"
PropertyValue
CaptionApplication Layer Gateway Service
DescriptionProvides support for 3rd party protocol plug-ins for Internet Connection Sharing
DisplayNameApplication Layer Gateway Service
ExitCode1077
NameALG
PathNameC:\Windows\System32\alg.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="AppIDSvc"
PropertyValue
CaptionApplication Identity
DescriptionDetermines and verifies the identity of an application. Disabling this service will prevent AppLocker from being enforced.
DisplayNameApplication Identity
ExitCode1077
NameAppIDSvc
PathNameC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="Appinfo"
PropertyValue
CaptionApplication Information
DescriptionFacilitates the running of interactive applications with additional administrative privileges. If this service is stopped, users will be unable to launch applications with the additional administrative privileges they may require to perform desired user tasks.
DisplayNameApplication Information
ExitCode1077
NameAppinfo
PathNameC:\Windows\system32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="Apple Mobile Device"
PropertyValue
CaptionApple Mobile Device
DescriptionProvides the interface to Apple mobile devices.
DisplayNameApple Mobile Device
ExitCode0
NameApple Mobile Device
PathName"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="AudioEndpointBuilder"
PropertyValue
CaptionWindows Audio Endpoint Builder
DescriptionManages audio devices for the Windows Audio service. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start
DisplayNameWindows Audio Endpoint Builder
ExitCode0
NameAudioEndpointBuilder
PathNameC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="AudioSrv"
PropertyValue
CaptionWindows Audio
DescriptionManages audio for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start
DisplayNameWindows Audio
ExitCode0
NameAudioSrv
PathNameC:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="AxInstSV"
PropertyValue
CaptionActiveX Installer (AxInstSV)
DescriptionProvides User Account Control validation for the installation of ActiveX controls from the Internet and enables management of ActiveX control installation based on Group Policy settings. This service is started on demand and if disabled the installation of ActiveX controls will behave according to default browser settings.
DisplayNameActiveX Installer (AxInstSV)
ExitCode1077
NameAxInstSV
PathNameC:\Windows\system32\svchost.exe -k AxInstSVGroup
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="BDESVC"
PropertyValue
CaptionBitLocker Drive Encryption Service
DescriptionBDESVC hosts the BitLocker Drive Encryption service. BitLocker Drive Encryption provides secure startup for the operating system, as well as full volume encryption for OS, fixed or removable volumes. This service allows BitLocker to prompt users for various actions related to their volumes when mounted, and unlocks volumes automatically without user interaction. Additionally, it stores recovery information to Active Directory, if available, and, if necessary, ensures the most recent recovery certificates are used. Stopping or disabling the service would prevent users from leveraging this functionality.
DisplayNameBitLocker Drive Encryption Service
ExitCode1077
NameBDESVC
PathNameC:\Windows\System32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="BFE"
PropertyValue
CaptionBase Filtering Engine
DescriptionThe Base Filtering Engine (BFE) is a service that manages firewall and Internet Protocol security (IPsec) policies and implements user mode filtering. Stopping or disabling the BFE service will significantly reduce the security of the system. It will also result in unpredictable behavior in IPsec management and firewall applications.
DisplayNameBase Filtering Engine
ExitCode0
NameBFE
PathNameC:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="BITS"
PropertyValue
CaptionBackground Intelligent Transfer Service
DescriptionTransfers files in the background using idle network bandwidth. If the service is disabled, then any applications that depend on BITS, such as Windows Update or MSN Explorer, will be unable to automatically download programs and other information.
DisplayNameBackground Intelligent Transfer Service
ExitCode0
NameBITS
PathNameC:\Windows\System32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="Bonjour Service"
PropertyValue
CaptionBonjour Service
DescriptionEnables hardware devices and software services to automatically configure themselves on the network and advertise their presence.
DisplayNameBonjour Service
ExitCode0
NameBonjour Service
PathName"C:\Program Files (x86)\Bonjour\mDNSResponder.exe"
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="Browser"
PropertyValue
CaptionComputer Browser
DescriptionMaintains an updated list of computers on the network and supplies this list to computers designated as browsers. If this service is stopped, this list will not be updated or maintained. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameComputer Browser
ExitCode0
NameBrowser
PathNameC:\Windows\System32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="bthserv"
PropertyValue
CaptionBluetooth Support Service
DescriptionThe Bluetooth service supports discovery and association of remote Bluetooth devices. Stopping or disabling this service may cause already installed Bluetooth devices to fail to operate properly and prevent new devices from being discovered or associated.
DisplayNameBluetooth Support Service
ExitCode1077
Namebthserv
PathNameC:\Windows\system32\svchost.exe -k bthsvcs
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="CertPropSvc"
PropertyValue
CaptionCertificate Propagation
DescriptionCopies user certificates and root certificates from smart cards into the current user's certificate store, detects when a smart card is inserted into a smart card reader, and, if needed, installs the smart card Plug and Play minidriver.
DisplayNameCertificate Propagation
ExitCode1077
NameCertPropSvc
PathNameC:\Windows\system32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="clr_optimization_v2.0.50727_32"
PropertyValue
CaptionMicrosoft .NET Framework NGEN v2.0.50727_X86
DescriptionMicrosoft .NET Framework NGEN
DisplayNameMicrosoft .NET Framework NGEN v2.0.50727_X86
ExitCode1077
Nameclr_optimization_v2.0.50727_32
PathNameC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="clr_optimization_v2.0.50727_64"
PropertyValue
CaptionMicrosoft .NET Framework NGEN v2.0.50727_X64
DescriptionMicrosoft .NET Framework NGEN
DisplayNameMicrosoft .NET Framework NGEN v2.0.50727_X64
ExitCode1077
Nameclr_optimization_v2.0.50727_64
PathNameC:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="clr_optimization_v4.0.30319_32"
PropertyValue
CaptionMicrosoft .NET Framework NGEN v4.0.30319_X86
DescriptionMicrosoft .NET Framework NGEN
DisplayNameMicrosoft .NET Framework NGEN v4.0.30319_X86
ExitCode0
Nameclr_optimization_v4.0.30319_32
PathNameC:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="clr_optimization_v4.0.30319_64"
PropertyValue
CaptionMicrosoft .NET Framework NGEN v4.0.30319_X64
DescriptionMicrosoft .NET Framework NGEN
DisplayNameMicrosoft .NET Framework NGEN v4.0.30319_X64
ExitCode0
Nameclr_optimization_v4.0.30319_64
PathNameC:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="COMSysApp"
PropertyValue
CaptionCOM+ System Application
DescriptionManages the configuration and tracking of Component Object Model (COM)+-based components. If the service is stopped, most COM+-based components will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameCOM+ System Application
ExitCode1077
NameCOMSysApp
PathNameC:\Windows\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="CryptSvc"
PropertyValue
CaptionCryptographic Services
DescriptionProvides four management services: Catalog Database Service, which confirms the signatures of Windows files and allows new programs to be installed; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; Automatic Root Certificate Update Service, which retrieves root certificates from Windows Update and enable scenarios such as SSL; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameCryptographic Services
ExitCode0
NameCryptSvc
PathNameC:\Windows\system32\svchost.exe -k NetworkService
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="DcomLaunch"
PropertyValue
CaptionDCOM Server Process Launcher
DescriptionThe DCOMLAUNCH service launches COM and DCOM servers in response to object activation requests. If this service is stopped or disabled, programs using COM or DCOM will not function properly. It is strongly recommended that you have the DCOMLAUNCH service running.
DisplayNameDCOM Server Process Launcher
ExitCode0
NameDcomLaunch
PathNameC:\Windows\system32\svchost.exe -k DcomLaunch
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="defragsvc"
PropertyValue
CaptionDisk Defragmenter
DescriptionProvides Disk Defragmentation Capabilities.
DisplayNameDisk Defragmenter
ExitCode1077
Namedefragsvc
PathNameC:\Windows\system32\svchost.exe -k defragsvc
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="Dhcp"
PropertyValue
CaptionDHCP Client
DescriptionRegisters and updates IP addresses and DNS records for this computer. If this service is stopped, this computer will not receive dynamic IP addresses and DNS updates. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameDHCP Client
ExitCode0
NameDhcp
PathNameC:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="Dnscache"
PropertyValue
CaptionDNS Client
DescriptionThe DNS Client service (dnscache) caches Domain Name System (DNS) names and registers the full computer name for this computer. If the service is stopped, DNS names will continue to be resolved. However, the results of DNS name queries will not be cached and the computer's name will not be registered. If the service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameDNS Client
ExitCode0
NameDnscache
PathNameC:\Windows\system32\svchost.exe -k NetworkService
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="dot3svc"
PropertyValue
CaptionWired AutoConfig
DescriptionThe Wired AutoConfig (DOT3SVC) service is responsible for performing IEEE 802.1X authentication on Ethernet interfaces. If your current wired network deployment enforces 802.1X authentication, the DOT3SVC service should be configured to run for establishing Layer 2 connectivity and/or providing access to network resources. Wired networks that do not enforce 802.1X authentication are unaffected by the DOT3SVC service.
DisplayNameWired AutoConfig
ExitCode1077
Namedot3svc
PathNameC:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="DPS"
PropertyValue
CaptionDiagnostic Policy Service
DescriptionThe Diagnostic Policy Service enables problem detection, troubleshooting and resolution for Windows components. If this service is stopped, diagnostics will no longer function.
DisplayNameDiagnostic Policy Service
ExitCode0
NameDPS
PathNameC:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="EapHost"
PropertyValue
CaptionExtensible Authentication Protocol
DescriptionThe Extensible Authentication Protocol (EAP) service provides network authentication in such scenarios as 802.1x wired and wireless, VPN, and Network Access Protection (NAP). EAP also provides application programming interfaces (APIs) that are used by network access clients, including wireless and VPN clients, during the authentication process. If you disable this service, this computer is prevented from accessing networks that require EAP authentication.
DisplayNameExtensible Authentication Protocol
ExitCode0
NameEapHost
PathNameC:\Windows\System32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="EFS"
PropertyValue
CaptionEncrypting File System (EFS)
DescriptionProvides the core file encryption technology used to store encrypted files on NTFS file system volumes. If this service is stopped or disabled, applications will be unable to access encrypted files.
DisplayNameEncrypting File System (EFS)
ExitCode1077
NameEFS
PathNameC:\Windows\System32\lsass.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="ehRecvr"
PropertyValue
CaptionWindows Media Center Receiver Service
DescriptionWindows Media Center Service for TV and FM broadcast reception
DisplayNameWindows Media Center Receiver Service
ExitCode1077
NameehRecvr
PathNameC:\Windows\ehome\ehRecvr.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="ehSched"
PropertyValue
CaptionWindows Media Center Scheduler Service
DescriptionStarts and stops recording of TV programs within Windows Media Center
DisplayNameWindows Media Center Scheduler Service
ExitCode1077
NameehSched
PathNameC:\Windows\ehome\ehsched.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="EhttpSrv"
PropertyValue
CaptionESET HTTP Server
DescriptionESET HTTP Server
DisplayNameESET HTTP Server
ExitCode1077
NameEhttpSrv
PathName"C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe"
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="ekrn"
PropertyValue
CaptionESET Service
DescriptionESET Service
DisplayNameESET Service
ExitCode0
Nameekrn
PathName"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="eventlog"
PropertyValue
CaptionWindows Event Log
DescriptionThis service manages events and event logs. It supports logging events, querying events, subscribing to events, archiving event logs, and managing event metadata. It can display events in both XML and plain text format. Stopping this service may compromise security and reliability of the system.
DisplayNameWindows Event Log
ExitCode0
Nameeventlog
PathNameC:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="EventSystem"
PropertyValue
CaptionCOM+ Event System
DescriptionSupports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameCOM+ Event System
ExitCode0
NameEventSystem
PathNameC:\Windows\system32\svchost.exe -k LocalService
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="Fax"
PropertyValue
CaptionFax
DescriptionEnables you to send and receive faxes, utilizing fax resources available on this computer or on the network.
DisplayNameFax
ExitCode1077
NameFax
PathNameC:\Windows\system32\fxssvc.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="fdPHost"
PropertyValue
CaptionFunction Discovery Provider Host
DescriptionThe FDPHOST service hosts the Function Discovery (FD) network discovery providers. These FD providers supply network discovery services for the Simple Services Discovery Protocol (SSDP) and Web Services – Discovery (WS-D) protocol. Stopping or disabling the FDPHOST service will disable network discovery for these protocols when using FD. When this service is unavailable, network services using FD and relying on these discovery protocols will be unable to find network devices or resources.
DisplayNameFunction Discovery Provider Host
ExitCode0
NamefdPHost
PathNameC:\Windows\system32\svchost.exe -k LocalService
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="FDResPub"
PropertyValue
CaptionFunction Discovery Resource Publication
DescriptionPublishes this computer and resources attached to this computer so they can be discovered over the network. If this service is stopped, network resources will no longer be published and they will not be discovered by other computers on the network.
DisplayNameFunction Discovery Resource Publication
ExitCode0
NameFDResPub
PathNameC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="FontCache"
PropertyValue
CaptionWindows Font Cache Service
DescriptionOptimizes performance of applications by caching commonly used font data. Applications will start this service if it is not already running. It can be disabled, though doing so will degrade application performance.
DisplayNameWindows Font Cache Service
ExitCode0
NameFontCache
PathNameC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="FontCache3.0.0.0"
PropertyValue
CaptionWindows Presentation Foundation Font Cache 3.0.0.0
DescriptionOptimizes performance of Windows Presentation Foundation (WPF) applications by caching commonly used font data. WPF applications will start this service if it is not already running. It can be disabled, though doing so will degrade the performance of WPF applications.
DisplayNameWindows Presentation Foundation Font Cache 3.0.0.0
ExitCode0
NameFontCache3.0.0.0
PathNameC:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="gpsvc"
PropertyValue
CaptionGroup Policy Client
DescriptionThe service is responsible for applying settings configured by administrators for the computer and users through the Group Policy component. If the service is stopped or disabled, the settings will not be applied and applications and components will not be manageable through Group Policy. Any components or applications that depend on the Group Policy component might not be functional if the service is stopped or disabled.
DisplayNameGroup Policy Client
ExitCode0
Namegpsvc
PathNameC:\Windows\system32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="hidserv"
PropertyValue
CaptionHuman Interface Device Access
DescriptionEnables generic input access to Human Interface Devices (HID), which activates and maintains the use of predefined hot buttons on keyboards, remote controls, and other multimedia devices. If this service is stopped, hot buttons controlled by this service will no longer function. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameHuman Interface Device Access
ExitCode1077
Namehidserv
PathNameC:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="hkmsvc"
PropertyValue
CaptionHealth Key and Certificate Management
DescriptionProvides X.509 certificate and key management services for the Network Access Protection Agent (NAPAgent). Enforcement technologies that use X.509 certificates may not function properly without this service
DisplayNameHealth Key and Certificate Management
ExitCode1077
Namehkmsvc
PathNameC:\Windows\System32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="HomeGroupListener"
PropertyValue
CaptionHomeGroup Listener
DescriptionMakes local computer changes associated with configuration and maintenance of the homegroup-joined computer. If this service is stopped or disabled, your computer will not work properly in a homegroup and your homegroup might not work properly. It is recommended that you keep this service running.
DisplayNameHomeGroup Listener
ExitCode0
NameHomeGroupListener
PathNameC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="HomeGroupProvider"
PropertyValue
CaptionHomeGroup Provider
DescriptionPerforms networking tasks associated with configuration and maintenance of homegroups. If this service is stopped or disabled, your computer will be unable to detect other homegroups and your homegroup might not work properly. It is recommended that you keep this service running.
DisplayNameHomeGroup Provider
ExitCode0
NameHomeGroupProvider
PathNameC:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="IBMPMSVC"
PropertyValue
CaptionThinkPad PM Service
DisplayNameThinkPad PM Service
ExitCode0
NameIBMPMSVC
PathNameC:\Windows\system32\ibmpmsvc.exe
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="idsvc"
PropertyValue
CaptionWindows CardSpace
DescriptionSecurely enables the creation, management, and disclosure of digital identities.
DisplayNameWindows CardSpace
ExitCode1077
Nameidsvc
PathName"C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe"
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="IKEEXT"
PropertyValue
CaptionIKE and AuthIP IPsec Keying Modules
DescriptionThe IKEEXT service hosts the Internet Key Exchange (IKE) and Authenticated Internet Protocol (AuthIP) keying modules. These keying modules are used for authentication and key exchange in Internet Protocol security (IPsec). Stopping or disabling the IKEEXT service will disable IKE and AuthIP key exchange with peer computers. IPsec is typically configured to use IKE or AuthIP; therefore, stopping or disabling the IKEEXT service might result in an IPsec failure and might compromise the security of the system. It is strongly recommended that you have the IKEEXT service running.
DisplayNameIKE and AuthIP IPsec Keying Modules
ExitCode1077
NameIKEEXT
PathNameC:\Windows\system32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="IPBusEnum"
PropertyValue
CaptionPnP-X IP Bus Enumerator
DescriptionThe PnP-X bus enumerator service manages the virtual network bus. It discovers network connected devices using the SSDP/WS discovery protocols and gives them presence in PnP. If this service is stopped or disabled, presence of NCD devices will not be maintained in PnP. All pnpx based scenarios will stop functioning.
DisplayNamePnP-X IP Bus Enumerator
ExitCode1077
NameIPBusEnum
PathNameC:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="iphlpsvc"
PropertyValue
CaptionIP Helper
DescriptionProvides tunnel connectivity using IPv6 transition technologies (6to4, ISATAP, Port Proxy, and Teredo), and IP-HTTPS. If this service is stopped, the computer will not have the enhanced connectivity benefits that these technologies offer.
DisplayNameIP Helper
ExitCode0
Nameiphlpsvc
PathNameC:\Windows\System32\svchost.exe -k NetSvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="iPod Service"
PropertyValue
CaptioniPod Service
DescriptioniPod hardware management services
DisplayNameiPod Service
ExitCode1077
NameiPod Service
PathName"C:\Program Files\iPod\bin\iPodService.exe"
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="KeyIso"
PropertyValue
CaptionCNG Key Isolation
DescriptionThe CNG key isolation service is hosted in the LSA process. The service provides key process isolation to private keys and associated cryptographic operations as required by the Common Criteria. The service stores and uses long-lived keys in a secure process complying with Common Criteria requirements.
DisplayNameCNG Key Isolation
ExitCode0
NameKeyIso
PathNameC:\Windows\system32\lsass.exe
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="KtmRm"
PropertyValue
CaptionKtmRm for Distributed Transaction Coordinator
DescriptionCoordinates transactions between the Distributed Transaction Coordinator (MSDTC) and the Kernel Transaction Manager (KTM). If it is not needed, it is recommended that this service remain stopped. If it is needed, both MSDTC and KTM will start this service automatically. If this service is disabled, any MSDTC transaction interacting with a Kernel Resource Manager will fail and any services that explicitly depend on it will fail to start.
DisplayNameKtmRm for Distributed Transaction Coordinator
ExitCode1077
NameKtmRm
PathNameC:\Windows\System32\svchost.exe -k NetworkServiceAndNoImpersonation
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="LanmanServer"
PropertyValue
CaptionServer
DescriptionSupports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameServer
ExitCode0
NameLanmanServer
PathNameC:\Windows\system32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="LanmanWorkstation"
PropertyValue
CaptionWorkstation
DescriptionCreates and maintains client network connections to remote servers using the SMB protocol. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameWorkstation
ExitCode0
NameLanmanWorkstation
PathNameC:\Windows\System32\svchost.exe -k NetworkService
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="lltdsvc"
PropertyValue
CaptionLink-Layer Topology Discovery Mapper
DescriptionCreates a Network Map, consisting of PC and device topology (connectivity) information, and metadata describing each PC and device. If this service is disabled, the Network Map will not function properly.
DisplayNameLink-Layer Topology Discovery Mapper
ExitCode1077
Namelltdsvc
PathNameC:\Windows\System32\svchost.exe -k LocalService
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="lmhosts"
PropertyValue
CaptionTCP/IP NetBIOS Helper
DescriptionProvides support for the NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution for clients on the network, therefore enabling users to share files, print, and log on to the network. If this service is stopped, these functions might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameTCP/IP NetBIOS Helper
ExitCode0
Namelmhosts
PathNameC:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="MBAMService"
PropertyValue
CaptionMBAMService
DescriptionMalwarebytes' Anti-Malware service
DisplayNameMBAMService
ExitCode0
NameMBAMService
PathName"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe"
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="Mcx2Svc"
PropertyValue
CaptionMedia Center Extender Service
DescriptionAllows Media Center Extenders to locate and connect to the computer.
DisplayNameMedia Center Extender Service
ExitCode1077
NameMcx2Svc
PathNameC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="MMCSS"
PropertyValue
CaptionMultimedia Class Scheduler
DescriptionEnables relative prioritization of work based on system-wide task priorities. This is intended mainly for multimedia applications. If this service is stopped, individual tasks resort to their default priority.
DisplayNameMultimedia Class Scheduler
ExitCode0
NameMMCSS
PathNameC:\Windows\system32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="MpsSvc"
PropertyValue
CaptionWindows Firewall
DescriptionWindows Firewall helps protect your computer by preventing unauthorized users from gaining access to your computer through the Internet or a network.
DisplayNameWindows Firewall
ExitCode0
NameMpsSvc
PathNameC:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="MSDTC"
PropertyValue
CaptionDistributed Transaction Coordinator
DescriptionCoordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will fail. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameDistributed Transaction Coordinator
ExitCode1077
NameMSDTC
PathNameC:\Windows\System32\msdtc.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="MSiSCSI"
PropertyValue
CaptionMicrosoft iSCSI Initiator Service
DescriptionManages Internet SCSI (iSCSI) sessions from this computer to remote iSCSI target devices. If this service is stopped, this computer will not be able to login or access iSCSI targets. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameMicrosoft iSCSI Initiator Service
ExitCode1077
NameMSiSCSI
PathNameC:\Windows\system32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="msiserver"
PropertyValue
CaptionWindows Installer
DescriptionAdds, modifies, and removes applications provided as a Windows Installer (*.msi) package. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameWindows Installer
ExitCode1077
Namemsiserver
PathNameC:\Windows\system32\msiexec.exe /V
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="napagent"
PropertyValue
CaptionNetwork Access Protection Agent
DescriptionThe Network Access Protection (NAP) agent service collects and manages health information for client computers on a network. Information collected by NAP agent is used to make sure that the client computer has the required software and settings. If a client computer is not compliant with health policy, it can be provided with restricted network access until its configuration is updated. Depending on the configuration of health policy, client computers might be automatically updated so that users quickly regain full network access without having to manually update their computer.
DisplayNameNetwork Access Protection Agent
ExitCode1077
Namenapagent
PathNameC:\Windows\System32\svchost.exe -k NetworkService
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="Netlogon"
PropertyValue
CaptionNetlogon
DescriptionMaintains a secure channel between this computer and the domain controller for authenticating users and services. If this service is stopped, the computer may not authenticate users and services and the domain controller cannot register DNS records. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameNetlogon
ExitCode1077
NameNetlogon
PathNameC:\Windows\system32\lsass.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="Netman"
PropertyValue
CaptionNetwork Connections
DescriptionManages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections.
DisplayNameNetwork Connections
ExitCode0
NameNetman
PathNameC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="netprofm"
PropertyValue
CaptionNetwork List Service
DescriptionIdentifies the networks to which the computer has connected, collects and stores properties for these networks, and notifies applications when these properties change.
DisplayNameNetwork List Service
ExitCode0
Namenetprofm
PathNameC:\Windows\System32\svchost.exe -k LocalService
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="NetTcpPortSharing"
PropertyValue
CaptionNet.Tcp Port Sharing Service
DescriptionProvides ability to share TCP ports over the net.tcp protocol.
DisplayNameNet.Tcp Port Sharing Service
ExitCode1077
NameNetTcpPortSharing
PathName"C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe"
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="NlaSvc"
PropertyValue
CaptionNetwork Location Awareness
DescriptionCollects and stores configuration information for the network and notifies programs when this information is modified. If this service is stopped, configuration information might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameNetwork Location Awareness
ExitCode0
NameNlaSvc
PathNameC:\Windows\System32\svchost.exe -k NetworkService
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="npggsvc"
PropertyValue
CaptionnProtect GameGuard Service
DescriptionnProtect GameGuard Service
DisplayNamenProtect GameGuard Service
ExitCode1077
Namenpggsvc
PathNameC:\Windows\system32\GameMon.des -service
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="nsi"
PropertyValue
CaptionNetwork Store Interface Service
DescriptionThis service delivers network notifications (e.g. interface addition/deleting etc) to user mode clients. Stopping this service will cause loss of network connectivity. If this service is disabled, any other services that explicitly depend on this service will fail to start.
DisplayNameNetwork Store Interface Service
ExitCode0
Namensi
PathNameC:\Windows\system32\svchost.exe -k LocalService
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="p2pimsvc"
PropertyValue
CaptionPeer Networking Identity Manager
DescriptionProvides identity services for the Peer Name Resolution Protocol (PNRP) and Peer-to-Peer Grouping services. If disabled, the Peer Name Resolution Protocol (PNRP) and Peer-to-Peer Grouping services may not function, and some applications, such as HomeGroup and Remote Assistance, may not function correctly.
DisplayNamePeer Networking Identity Manager
ExitCode0
Namep2pimsvc
PathNameC:\Windows\System32\svchost.exe -k LocalServicePeerNet
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="p2psvc"
PropertyValue
CaptionPeer Networking Grouping
DescriptionEnables multi-party communication using Peer-to-Peer Grouping. If disabled, some applications, such as HomeGroup, may not function.
DisplayNamePeer Networking Grouping
ExitCode0
Namep2psvc
PathNameC:\Windows\System32\svchost.exe -k LocalServicePeerNet
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="PcaSvc"
PropertyValue
CaptionProgram Compatibility Assistant Service
DescriptionThis service provides support for the Program Compatibility Assistant (PCA). PCA monitors programs installed and run by the user and detects known compatibility problems. If this service is stopped, PCA will not function properly.
DisplayNameProgram Compatibility Assistant Service
ExitCode0
NamePcaSvc
PathNameC:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="PerfHost"
PropertyValue
CaptionPerformance Counter DLL Host
DescriptionEnables remote users and 64-bit processes to query performance counters provided by 32-bit DLLs. If this service is stopped, only local users and 32-bit processes will be able to query performance counters provided by 32-bit DLLs.
DisplayNamePerformance Counter DLL Host
ExitCode1077
NamePerfHost
PathNameC:\Windows\SysWow64\perfhost.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="pla"
PropertyValue
CaptionPerformance Logs & Alerts
DescriptionPerformance Logs and Alerts Collects performance data from local or remote computers based on preconfigured schedule parameters, then writes the data to a log or triggers an alert. If this service is stopped, performance information will not be collected. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNamePerformance Logs & Alerts
ExitCode0
Namepla
PathNameC:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="PlugPlay"
PropertyValue
CaptionPlug and Play
DescriptionEnables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability.
DisplayNamePlug and Play
ExitCode0
NamePlugPlay
PathNameC:\Windows\system32\svchost.exe -k DcomLaunch
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="PnkBstrA"
PropertyValue
CaptionPnkBstrA
DescriptionPunkBuster Service Component [v1033] http://www.evenbalance.com
DisplayNamePnkBstrA
ExitCode0
NamePnkBstrA
PathNameC:\Windows\system32\PnkBstrA.exe
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="PNRPAutoReg"
PropertyValue
CaptionPNRP Machine Name Publication Service
DescriptionThis service publishes a machine name using the Peer Name Resolution Protocol. Configuration is managed via the netsh context 'p2p pnrp peer'
DisplayNamePNRP Machine Name Publication Service
ExitCode1077
NamePNRPAutoReg
PathNameC:\Windows\System32\svchost.exe -k LocalServicePeerNet
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="PNRPsvc"
PropertyValue
CaptionPeer Name Resolution Protocol
DescriptionEnables serverless peer name resolution over the Internet using the Peer Name Resolution Protocol (PNRP). If disabled, some peer-to-peer and collaborative applications, such as Remote Assistance, may not function.
DisplayNamePeer Name Resolution Protocol
ExitCode0
NamePNRPsvc
PathNameC:\Windows\System32\svchost.exe -k LocalServicePeerNet
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="PolicyAgent"
PropertyValue
CaptionIPsec Policy Agent
DescriptionInternet Protocol security (IPsec) supports network-level peer authentication, data origin authentication, data integrity, data confidentiality (encryption), and replay protection. This service enforces IPsec policies created through the IP Security Policies snap-in or the command-line tool "netsh ipsec". If you stop this service, you may experience network connectivity issues if your policy requires that connections use IPsec. Also,remote management of Windows Firewall is not available when this service is stopped.
DisplayNameIPsec Policy Agent
ExitCode0
NamePolicyAgent
PathNameC:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="Power"
PropertyValue
CaptionPower
DescriptionManages power policy and power policy notification delivery.
DisplayNamePower
ExitCode0
NamePower
PathNameC:\Windows\system32\svchost.exe -k DcomLaunch
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="Power Manager DBC Service"
PropertyValue
CaptionPower Manager DBC Service
DisplayNamePower Manager DBC Service
ExitCode1077
NamePower Manager DBC Service
PathName"C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE"
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="ProfSvc"
PropertyValue
CaptionUser Profile Service
DescriptionThis service is responsible for loading and unloading user profiles. If this service is stopped or disabled, users will no longer be able to successfully logon or logoff, applications may have problems getting to users' data, and components registered to receive profile event notifications will not receive them.
DisplayNameUser Profile Service
ExitCode0
NameProfSvc
PathNameC:\Windows\system32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="ProtectedStorage"
PropertyValue
CaptionProtected Storage
DescriptionProvides protected storage for sensitive data, such as passwords, to prevent access by unauthorized services, processes, or users.
DisplayNameProtected Storage
ExitCode1077
NameProtectedStorage
PathNameC:\Windows\system32\lsass.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="QWAVE"
PropertyValue
CaptionQuality Windows Audio Video Experience
DescriptionQuality Windows Audio Video Experience (qWave) is a networking platform for Audio Video (AV) streaming applications on IP home networks. qWave enhances AV streaming performance and reliability by ensuring network quality-of-service (QoS) for AV applications. It provides mechanisms for admission control, run time monitoring and enforcement, application feedback, and traffic prioritization.
DisplayNameQuality Windows Audio Video Experience
ExitCode1077
NameQWAVE
PathNameC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="RasAuto"
PropertyValue
CaptionRemote Access Auto Connection Manager
DescriptionCreates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address.
DisplayNameRemote Access Auto Connection Manager
ExitCode1077
NameRasAuto
PathNameC:\Windows\System32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="RasMan"
PropertyValue
CaptionRemote Access Connection Manager
DescriptionManages dial-up and virtual private network (VPN) connections from this computer to the Internet or other remote networks. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameRemote Access Connection Manager
ExitCode1077
NameRasMan
PathNameC:\Windows\System32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="RemoteAccess"
PropertyValue
CaptionRouting and Remote Access
DescriptionOffers routing services to businesses in local area and wide area network environments.
DisplayNameRouting and Remote Access
ExitCode1077
NameRemoteAccess
PathNameC:\Windows\System32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="RemoteRegistry"
PropertyValue
CaptionRemote Registry
DescriptionEnables remote users to modify registry settings on this computer. If this service is stopped, the registry can be modified only by users on this computer. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameRemote Registry
ExitCode1077
NameRemoteRegistry
PathNameC:\Windows\system32\svchost.exe -k regsvc
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="RpcEptMapper"
PropertyValue
CaptionRPC Endpoint Mapper
DescriptionResolves RPC interfaces identifiers to transport endpoints. If this service is stopped or disabled, programs using Remote Procedure Call (RPC) services will not function properly.
DisplayNameRPC Endpoint Mapper
ExitCode0
NameRpcEptMapper
PathNameC:\Windows\system32\svchost.exe -k RPCSS
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="RpcLocator"
PropertyValue
CaptionRemote Procedure Call (RPC) Locator
DescriptionIn Windows 2003 and earlier versions of Windows, the Remote Procedure Call (RPC) Locator service manages the RPC name service database. In Windows Vista and later versions of Windows, this service does not provide any functionality and is present for application compatibility.
DisplayNameRemote Procedure Call (RPC) Locator
ExitCode1077
NameRpcLocator
PathNameC:\Windows\system32\locator.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="RpcSs"
PropertyValue
CaptionRemote Procedure Call (RPC)
DescriptionThe RPCSS service is the Service Control Manager for COM and DCOM servers. It performs object activations requests, object exporter resolutions and distributed garbage collection for COM and DCOM servers. If this service is stopped or disabled, programs using COM or DCOM will not function properly. It is strongly recommended that you have the RPCSS service running
DisplayNameRemote Procedure Call (RPC)
ExitCode0
NameRpcSs
PathNameC:\Windows\system32\svchost.exe -k rpcss
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="SamSs"
PropertyValue
CaptionSecurity Accounts Manager
DescriptionThe startup of this service signals other services that the Security Accounts Manager (SAM) is ready to accept requests. Disabling this service will prevent other services in the system from being notified when the SAM is ready, which may in turn cause those services to fail to start correctly. This service should not be disabled.
DisplayNameSecurity Accounts Manager
ExitCode0
NameSamSs
PathNameC:\Windows\system32\lsass.exe
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="SCardSvr"
PropertyValue
CaptionSmart Card
DescriptionManages access to smart cards read by this computer. If this service is stopped, this computer will be unable to read smart cards. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameSmart Card
ExitCode1077
NameSCardSvr
PathNameC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="Schedule"
PropertyValue
CaptionTask Scheduler
DescriptionEnables a user to configure and schedule automated tasks on this computer. The service also hosts multiple Windows system-critical tasks. If this service is stopped or disabled, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameTask Scheduler
ExitCode0
NameSchedule
PathNameC:\Windows\system32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="SCPolicySvc"
PropertyValue
CaptionSmart Card Removal Policy
DescriptionAllows the system to be configured to lock the user desktop upon smart card removal.
DisplayNameSmart Card Removal Policy
ExitCode1077
NameSCPolicySvc
PathNameC:\Windows\system32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="SDRSVC"
PropertyValue
CaptionWindows Backup
DescriptionProvides Windows Backup and Restore capabilities.
DisplayNameWindows Backup
ExitCode1077
NameSDRSVC
PathNameC:\Windows\system32\svchost.exe -k SDRSVC
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="seclogon"
PropertyValue
CaptionSecondary Logon
DescriptionEnables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameSecondary Logon
ExitCode1077
Nameseclogon
PathNameC:\Windows\system32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="SENS"
PropertyValue
CaptionSystem Event Notification Service
DescriptionMonitors system events and notifies subscribers to COM+ Event System of these events.
DisplayNameSystem Event Notification Service
ExitCode0
NameSENS
PathNameC:\Windows\system32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="SensrSvc"
PropertyValue
CaptionAdaptive Brightness
DescriptionMonitors ambient light sensors to detect changes in ambient light and adjust the display brightness. If this service is stopped or disabled, the display brightness will not adapt to lighting conditions.
DisplayNameAdaptive Brightness
ExitCode1077
NameSensrSvc
PathNameC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="SessionEnv"
PropertyValue
CaptionRemote Desktop Configuration
DescriptionRemote Desktop Configuration service (RDCS) is responsible for all Remote Desktop Services and Remote Desktop related configuration and session maintenance activities that require SYSTEM context. These include per-session temporary folders, RD themes, and RD certificates.
DisplayNameRemote Desktop Configuration
ExitCode1077
NameSessionEnv
PathNameC:\Windows\System32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="SharedAccess"
PropertyValue
CaptionInternet Connection Sharing (ICS)
DescriptionProvides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network.
DisplayNameInternet Connection Sharing (ICS)
ExitCode1077
NameSharedAccess
PathNameC:\Windows\System32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="ShellHWDetection"
PropertyValue
CaptionShell Hardware Detection
DescriptionProvides notifications for AutoPlay hardware events.
DisplayNameShell Hardware Detection
ExitCode0
NameShellHWDetection
PathNameC:\Windows\System32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="SNMPTRAP"
PropertyValue
CaptionSNMP Trap
DescriptionReceives trap messages generated by local or remote Simple Network Management Protocol (SNMP) agents and forwards the messages to SNMP management programs running on this computer. If this service is stopped, SNMP-based programs on this computer will not receive SNMP trap messages. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameSNMP Trap
ExitCode1077
NameSNMPTRAP
PathNameC:\Windows\System32\snmptrap.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="Spooler"
PropertyValue
CaptionPrint Spooler
DescriptionLoads files to memory for later printing
DisplayNamePrint Spooler
ExitCode0
NameSpooler
PathNameC:\Windows\System32\spoolsv.exe
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="sppsvc"
PropertyValue
CaptionSoftware Protection
DescriptionEnables the download, installation and enforcement of digital licenses for Windows and Windows applications. If the service is disabled, the operating system and licensed applications may run in a notification mode. It is strongly recommended that you not disable the Software Protection service.
DisplayNameSoftware Protection
ExitCode0
Namesppsvc
PathNameC:\Windows\system32\sppsvc.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="sppuinotify"
PropertyValue
CaptionSPP Notification Service
DescriptionProvides Software Licensing activation and notification
DisplayNameSPP Notification Service
ExitCode1077
Namesppuinotify
PathNameC:\Windows\system32\svchost.exe -k LocalService
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="SSDPSRV"
PropertyValue
CaptionSSDP Discovery
DescriptionDiscovers networked devices and services that use the SSDP discovery protocol, such as UPnP devices. Also announces SSDP devices and services running on the local computer. If this service is stopped, SSDP-based devices will not be discovered. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameSSDP Discovery
ExitCode0
NameSSDPSRV
PathNameC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="SstpSvc"
PropertyValue
CaptionSecure Socket Tunneling Protocol Service
DescriptionProvides support for the Secure Socket Tunneling Protocol (SSTP) to connect to remote computers using VPN. If this service is disabled, users will not be able to use SSTP to access remote servers.
DisplayNameSecure Socket Tunneling Protocol Service
ExitCode1077
NameSstpSvc
PathNameC:\Windows\system32\svchost.exe -k LocalService
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="Steam Client Service"
PropertyValue
CaptionSteam Client Service
DescriptionSteam Client Service monitors and updates Steam content
DisplayNameSteam Client Service
ExitCode1077
NameSteam Client Service
PathNameC:\Program Files (x86)\Common Files\Steam\SteamService.exe /RunAsService
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="stisvc"
PropertyValue
CaptionWindows Image Acquisition (WIA)
DescriptionProvides image acquisition services for scanners and cameras
DisplayNameWindows Image Acquisition (WIA)
ExitCode0
Namestisvc
PathNameC:\Windows\system32\svchost.exe -k imgsvc
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="swprv"
PropertyValue
CaptionMicrosoft Software Shadow Copy Provider
DescriptionManages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameMicrosoft Software Shadow Copy Provider
ExitCode1077
Nameswprv
PathNameC:\Windows\System32\svchost.exe -k swprv
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="SysMain"
PropertyValue
CaptionSuperfetch
DescriptionMaintains and improves system performance over time.
DisplayNameSuperfetch
ExitCode0
NameSysMain
PathNameC:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="TabletInputService"
PropertyValue
CaptionTablet PC Input Service
DescriptionEnables Tablet PC pen and ink functionality
DisplayNameTablet PC Input Service
ExitCode1077
NameTabletInputService
PathNameC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="TapiSrv"
PropertyValue
CaptionTelephony
DescriptionProvides Telephony API (TAPI) support for programs that control telephony devices on the local computer and, through the LAN, on servers that are also running the service.
DisplayNameTelephony
ExitCode1077
NameTapiSrv
PathNameC:\Windows\System32\svchost.exe -k NetworkService
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="TBS"
PropertyValue
CaptionTPM Base Services
DescriptionEnables access to the Trusted Platform Module (TPM), which provides hardware-based cryptographic services to system components and applications. If this service is stopped or disabled, applications will be unable to use keys protected by the TPM.
DisplayNameTPM Base Services
ExitCode1077
NameTBS
PathNameC:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="TeamViewer6"
PropertyValue
CaptionTeamViewer 6
DescriptionTeamViewer Remote Software
DisplayNameTeamViewer 6
ExitCode1077
NameTeamViewer6
PathNameC:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="TermService"
PropertyValue
CaptionRemote Desktop Services
DescriptionAllows users to connect interactively to a remote computer. Remote Desktop and Remote Desktop Session Host Server depend on this service. To prevent remote use of this computer, clear the checkboxes on the Remote tab of the System properties control panel item.
DisplayNameRemote Desktop Services
ExitCode1077
NameTermService
PathNameC:\Windows\System32\svchost.exe -k NetworkService
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="Themes"
PropertyValue
CaptionThemes
DescriptionProvides user experience theme management.
DisplayNameThemes
ExitCode0
NameThemes
PathNameC:\Windows\System32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="THREADORDER"
PropertyValue
CaptionThread Ordering Server
DescriptionProvides ordered execution for a group of threads within a specific period of time.
DisplayNameThread Ordering Server
ExitCode1077
NameTHREADORDER
PathNameC:\Windows\system32\svchost.exe -k LocalService
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="TrkWks"
PropertyValue
CaptionDistributed Link Tracking Client
DescriptionMaintains links between NTFS files within a computer or across computers in a network.
DisplayNameDistributed Link Tracking Client
ExitCode0
NameTrkWks
PathNameC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="TrustedInstaller"
PropertyValue
CaptionWindows Modules Installer
DescriptionEnables installation, modification, and removal of Windows updates and optional components. If this service is disabled, install or uninstall of Windows updates might fail for this computer.
DisplayNameWindows Modules Installer
ExitCode1077
NameTrustedInstaller
PathNameC:\Windows\servicing\TrustedInstaller.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="UI0Detect"
PropertyValue
CaptionInteractive Services Detection
DescriptionEnables user notification of user input for interactive services, which enables access to dialogs created by interactive services when they appear. If this service is stopped, notifications of new interactive service dialogs will no longer function and there might not be access to interactive service dialogs. If this service is disabled, both notifications of and access to new interactive service dialogs will no longer function.
DisplayNameInteractive Services Detection
ExitCode1077
NameUI0Detect
PathNameC:\Windows\system32\UI0Detect.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="upnphost"
PropertyValue
CaptionUPnP Device Host
DescriptionAllows UPnP devices to be hosted on this computer. If this service is stopped, any hosted UPnP devices will stop functioning and no additional hosted devices can be added. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameUPnP Device Host
ExitCode1077
Nameupnphost
PathNameC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="UxSms"
PropertyValue
CaptionDesktop Window Manager Session Manager
DescriptionProvides Desktop Window Manager startup and maintenance services
DisplayNameDesktop Window Manager Session Manager
ExitCode0
NameUxSms
PathNameC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="VaultSvc"
PropertyValue
CaptionCredential Manager
DescriptionProvides secure storage and retrieval of credentials to users, applications and security service packages.
DisplayNameCredential Manager
ExitCode1077
NameVaultSvc
PathNameC:\Windows\system32\lsass.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="vds"
PropertyValue
CaptionVirtual Disk
DescriptionProvides management services for disks, volumes, file systems, and storage arrays.
DisplayNameVirtual Disk
ExitCode1077
Namevds
PathNameC:\Windows\System32\vds.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="VSS"
PropertyValue
CaptionVolume Shadow Copy
DescriptionManages and implements Volume Shadow Copies used for backup and other purposes. If this service is stopped, shadow copies will be unavailable for backup and the backup may fail. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameVolume Shadow Copy
ExitCode1077
NameVSS
PathNameC:\Windows\system32\vssvc.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="W32Time"
PropertyValue
CaptionWindows Time
DescriptionMaintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameWindows Time
ExitCode1077
NameW32Time
PathNameC:\Windows\system32\svchost.exe -k LocalService
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="WatAdminSvc"
PropertyValue
CaptionWindows Activation Technologies Service
DescriptionPerforms Windows 7 Validation.
DisplayNameWindows Activation Technologies Service
ExitCode1077
NameWatAdminSvc
PathNameC:\Windows\system32\Wat\WatAdminSvc.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="wbengine"
PropertyValue
CaptionBlock Level Backup Engine Service
DescriptionThe WBENGINE service is used by Windows Backup to perform backup and recovery operations. If this service is stopped by a user, it may cause the currently running backup or recovery operation to fail. Disabling this service may disable backup and recovery operations using Windows Backup on this computer.
DisplayNameBlock Level Backup Engine Service
ExitCode1077
Namewbengine
PathName"C:\Windows\system32\wbengine.exe"
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="WbioSrvc"
PropertyValue
CaptionWindows Biometric Service
DescriptionThe Windows biometric service gives client applications the ability to capture, compare, manipulate, and store biometric data without gaining direct access to any biometric hardware or samples. The service is hosted in a privileged SVCHOST process.
DisplayNameWindows Biometric Service
ExitCode1077
NameWbioSrvc
PathNameC:\Windows\system32\svchost.exe -k WbioSvcGroup
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="wcncsvc"
PropertyValue
CaptionWindows Connect Now - Config Registrar
DescriptionWCNCSVC hosts the Windows Connect Now Configuration which is Microsoft's Implementation of Wi-Fi Protected Setup (WPS) protocol. This is used to configure Wireless LAN settings for an Access Point (AP) or a Wi-Fi Device. The service is started programmatically as needed.
DisplayNameWindows Connect Now - Config Registrar
ExitCode1077
Namewcncsvc
PathNameC:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="WcsPlugInService"
PropertyValue
CaptionWindows Color System
DescriptionThe WcsPlugInService service hosts third-party Windows Color System color device model and gamut map model plug-in modules. These plug-in modules are vendor-specific extensions to the Windows Color System baseline color device and gamut map models. Stopping or disabling the WcsPlugInService service will disable this extensibility feature, and the Windows Color System will use its baseline model processing rather than the vendor's desired processing. This might result in inaccurate color rendering.
DisplayNameWindows Color System
ExitCode1077
NameWcsPlugInService
PathNameC:\Windows\system32\svchost.exe -k wcssvc
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="WdiServiceHost"
PropertyValue
CaptionDiagnostic Service Host
DescriptionThe Diagnostic Service Host is used by the Diagnostic Policy Service to host diagnostics that need to run in a Local Service context. If this service is stopped, any diagnostics that depend on it will no longer function.
DisplayNameDiagnostic Service Host
ExitCode0
NameWdiServiceHost
PathNameC:\Windows\System32\svchost.exe -k LocalService
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="WdiSystemHost"
PropertyValue
CaptionDiagnostic System Host
DescriptionThe Diagnostic System Host is used by the Diagnostic Policy Service to host diagnostics that need to run in a Local System context. If this service is stopped, any diagnostics that depend on it will no longer function.
DisplayNameDiagnostic System Host
ExitCode0
NameWdiSystemHost
PathNameC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="WebClient"
PropertyValue
CaptionWebClient
DescriptionEnables Windows-based programs to create, access, and modify Internet-based files. If this service is stopped, these functions will not be available. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameWebClient
ExitCode1077
NameWebClient
PathNameC:\Windows\system32\svchost.exe -k LocalService
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="Wecsvc"
PropertyValue
CaptionWindows Event Collector
DescriptionThis service manages persistent subscriptions to events from remote sources that support WS-Management protocol. This includes Windows Vista event logs, hardware and IPMI-enabled event sources. The service stores forwarded events in a local Event Log. If this service is stopped or disabled event subscriptions cannot be created and forwarded events cannot be accepted.
DisplayNameWindows Event Collector
ExitCode1077
NameWecsvc
PathNameC:\Windows\system32\svchost.exe -k NetworkService
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="wercplsupport"
PropertyValue
CaptionProblem Reports and Solutions Control Panel Support
DescriptionThis service provides support for viewing, sending and deletion of system-level problem reports for the Problem Reports and Solutions control panel.
DisplayNameProblem Reports and Solutions Control Panel Support
ExitCode1077
Namewercplsupport
PathNameC:\Windows\System32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="WerSvc"
PropertyValue
CaptionWindows Error Reporting Service
DescriptionAllows errors to be reported when programs stop working or responding and allows existing solutions to be delivered. Also allows logs to be generated for diagnostic and repair services. If this service is stopped, error reporting might not work correctly and results of diagnostic services and repairs might not be displayed.
DisplayNameWindows Error Reporting Service
ExitCode0
NameWerSvc
PathNameC:\Windows\System32\svchost.exe -k WerSvcGroup
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="WinDefend"
PropertyValue
CaptionWindows Defender
DescriptionProtection against spyware and potentially unwanted software
DisplayNameWindows Defender
ExitCode0
NameWinDefend
PathNameC:\Windows\System32\svchost.exe -k secsvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="WinHttpAutoProxySvc"
PropertyValue
CaptionWinHTTP Web Proxy Auto-Discovery Service
DescriptionWinHTTP implements the client HTTP stack and provides developers with a Win32 API and COM Automation component for sending HTTP requests and receiving responses. In addition, WinHTTP provides support for auto-discovering a proxy configuration via its implementation of the Web Proxy Auto-Discovery (WPAD) protocol.
DisplayNameWinHTTP Web Proxy Auto-Discovery Service
ExitCode0
NameWinHttpAutoProxySvc
PathNameC:\Windows\system32\svchost.exe -k LocalService
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="Winmgmt"
PropertyValue
CaptionWindows Management Instrumentation
DescriptionProvides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
DisplayNameWindows Management Instrumentation
ExitCode0
NameWinmgmt
PathNameC:\Windows\system32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="WinRM"
PropertyValue
CaptionWindows Remote Management (WS-Management)
DescriptionWindows Remote Management (WinRM) service implements the WS-Management protocol for remote management. WS-Management is a standard web services protocol used for remote software and hardware management. The WinRM service listens on the network for WS-Management requests and processes them. The WinRM Service needs to be configured with a listener using winrm.cmd command line tool or through Group Policy in order for it to listen over the network. The WinRM service provides access to WMI data and enables event collection. Event collection and subscription to events require that the service is running. WinRM messages use HTTP and HTTPS as transports. The WinRM service does not depend on IIS but is preconfigured to share a port with IIS on the same machine. The WinRM service reserves the /wsman URL prefix. To prevent conflicts with IIS, administrators should ensure that any websites hosted on IIS do not use the /wsman URL prefix.
DisplayNameWindows Remote Management (WS-Management)
ExitCode1077
NameWinRM
PathNameC:\Windows\System32\svchost.exe -k NetworkService
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="Wlansvc"
PropertyValue
CaptionWLAN AutoConfig
DescriptionThe WLANSVC service provides the logic required to configure, discover, connect to, and disconnect from a wireless local area network (WLAN) as defined by IEEE 802.11 standards. It also contains the logic to turn your computer into a software access point so that other devices or computers can connect to your computer wirelessly using a WLAN adapter that can support this. Stopping or disabling the WLANSVC service will make all WLAN adapters on your computer inaccessible from the Windows networking UI. It is strongly recommended that you have the WLANSVC service running if your computer has a WLAN adapter.
DisplayNameWLAN AutoConfig
ExitCode0
NameWlansvc
PathNameC:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="wmiApSrv"
PropertyValue
CaptionWMI Performance Adapter
DescriptionProvides performance library information from Windows Management Instrumentation (WMI) providers to clients on the network. This service only runs when Performance Data Helper is activated.
DisplayNameWMI Performance Adapter
ExitCode1077
NamewmiApSrv
PathNameC:\Windows\system32\wbem\WmiApSrv.exe
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="WMPNetworkSvc"
PropertyValue
CaptionWindows Media Player Network Sharing Service
DescriptionShares Windows Media Player libraries to other networked players and media devices using Universal Plug and Play
DisplayNameWindows Media Player Network Sharing Service
ExitCode1077
NameWMPNetworkSvc
PathName"C:\Program Files\Windows Media Player\wmpnetwk.exe"
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="WPCSvc"
PropertyValue
CaptionParental Controls
DescriptionThis service is a stub for Windows Parental Control functionality that existed in Vista. It is provided for backward compatibility only.
DisplayNameParental Controls
ExitCode1077
NameWPCSvc
PathNameC:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="WPDBusEnum"
PropertyValue
CaptionPortable Device Enumerator Service
DescriptionEnforces group policy for removable mass-storage devices. Enables applications such as Windows Media Player and Image Import Wizard to transfer and synchronize content using removable mass-storage devices.
DisplayNamePortable Device Enumerator Service
ExitCode0
NameWPDBusEnum
PathNameC:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
ServiceSpecificExitCode0
StartedFalse
StateStopped
Win32_Service.Name="wscsvc"
PropertyValue
CaptionSecurity Center
DescriptionThe WSCSVC (Windows Security Center) service monitors and reports security health settings on the computer. The health settings include firewall (on/off), antivirus (on/off/out of date), antispyware (on/off/out of date), Windows Update (automatically/manually download and install updates), User Account Control (on/off), and Internet settings (recommended/not recommended). The service provides COM APIs for independent software vendors to register and record the state of their products to the Security Center service. The Action Center (AC) UI uses the service to provide systray alerts and a graphical view of the security health states in the AC control panel. Network Access Protection (NAP) uses the service to report the security health states of clients to the NAP Network Policy Server to make network quarantine decisions. The service also has a public API that allows external consumers to programmatically retrieve the aggregated security health state of the system.
DisplayNameSecurity Center
ExitCode0
Namewscsvc
PathNameC:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="WSearch"
PropertyValue
CaptionWindows Search
DescriptionProvides content indexing, property caching, and search results for files, e-mail, and other content.
DisplayNameWindows Search
ExitCode0
NameWSearch
PathNameC:\Windows\system32\SearchIndexer.exe /Embedding
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="wuauserv"
PropertyValue
CaptionWindows Update
DescriptionEnables the detection, download, and installation of updates for Windows and other programs. If this service is disabled, users of this computer will not be able to use Windows Update or its automatic updating feature, and programs will not be able to use the Windows Update Agent (WUA) API.
DisplayNameWindows Update
ExitCode0
Namewuauserv
PathNameC:\Windows\system32\svchost.exe -k netsvcs
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="wudfsvc"
PropertyValue
CaptionWindows Driver Foundation - User-mode Driver Framework
DescriptionManages user-mode driver host processes.
DisplayNameWindows Driver Foundation - User-mode Driver Framework
ExitCode0
Namewudfsvc
PathNameC:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
ServiceSpecificExitCode0
StartedTrue
StateRunning
Win32_Service.Name="WwanSvc"
PropertyValue
CaptionWWAN AutoConfig
DescriptionThis service manages mobile broadband (GSM & CDMA) data card/embedded module adapters and connections by auto-configuring the networks. It is strongly recommended that this service be kept running for best user experience of mobile broadband devices.
DisplayNameWWAN AutoConfig
ExitCode1077
NameWwanSvc
PathNameC:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
ServiceSpecificExitCode0
StartedFalse
StateStopped
Workstation ServiceTop: of  1 
Service
LanmanWorkstation
Display Name:Workstation
Exit Code:0
Service Name:LanmanWorkstation
Path:C:\Windows\System32\svchost.exe -k NetworkService
Service Code:0
Started:True
State:Running
Startup Programs
Startup ProgramsTop: of  8 
Startup ItemCommand
egui"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
RtHDVCplC:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
IgfxTrayC:\Windows\system32\igfxtray.exe
HotKeysCmdsC:\Windows\system32\hkcmd.exe
PersistenceC:\Windows\system32\igfxpers.exe
DAEMON Tools Lite"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
PWMTRVrundll32 C:\PROGRA~2\ThinkPad\UTILIT~1\PWMTR64V.DLL,PwrMgrBkGndMonitor
SunJavaUpdateSched"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
More Startup ProgramsTop: of  1 
QueryQuery Result
root\cimv2:SELECT Name, FileName FROM cim_datafile WHERE Path="\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\" and System="false"0x0
Returned Objects
Startup ProgramsTop: of  3 
QueryResult
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\0x0
KeyValueTypeResult
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\egui"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice10x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\RtHDVCplC:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s10x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\IgfxTrayC:\Windows\system32\igfxtray.exe10x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\HotKeysCmdsC:\Windows\system32\hkcmd.exe10x0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\PersistenceC:\Windows\system32\igfxpers.exe10x0
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\0x0
KeyValueTypeResult
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\DAEMON Tools Lite"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun10x0
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\0x0
KeyValueTypeResult
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\PWMTRVrundll32 C:\PROGRA~2\ThinkPad\UTILIT~1\PWMTR64V.DLL,PwrMgrBkGndMonitor10x0
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\SunJavaUpdateSched"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"10x0
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\Malwarebytes' Anti-Malware"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray10x0
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\Adobe Reader Speed Launcher"C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"10x0
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\Adobe ARM"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"10x0
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\amd_dc_optC:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe10x0
Hardware Configuration
Disk Checks
SMART Disk StatusTop: of  1 
QueryQuery Result
root\wmi:SELECT * FROM MSStorageDriver_FailurePredictStatus WHERE PredictFailure = true0x0
Returned Objects
Logical Disk Dirty Bit SetTop: of  1 
QueryQuery Result
root\cimv2:SELECT __Relpath, Name, Description, FileSystem, VolumeDirty FROM Win32_LogicalDisk Where DriveType = 3 and VolumeDirty = true0x0
Returned Objects
System
IRQTop: of  31 
DescriptionAffinityIRQ
ACPI\PNP0100\4&19087A06&00xFFFFFFFF0
ACPI\PNP0303\4&19087A06&00xFFFFFFFF1
ACPI\PNP0B00\4&19087A06&00xFFFFFFFF8
PCI\VEN_8086&DEV_2930&SUBSYS_20F917AA&REV_03\3&11583659&0&FB0xFFFFFFFF10
ACPI\LEN0017\4&19087A06&00xFFFFFFFF12
ACPI\PNP0C04\4&19087A06&00xFFFFFFFF13
PCIIDE\IDECHANNEL\4&9614586&0&00xFFFFFFFF14
PCIIDE\IDECHANNEL\4&9614586&0&10xFFFFFFFF15
PCI\VEN_197B&DEV_2382&SUBSYS_212E17AA&REV_00\4&398A18D&0&00E00xFFFFFFFF16
PCI\VEN_197B&DEV_2383&SUBSYS_212F17AA&REV_00\4&398A18D&0&03E00xFFFFFFFF16
PCI\VEN_8086&DEV_2942&SUBSYS_20F317AA&REV_03\3&11583659&0&E10xFFFFFFFF16
PCI\VEN_197B&DEV_2384&SUBSYS_213017AA&REV_00\4&398A18D&0&04E00xFFFFFFFF16
PCI\VEN_8086&DEV_2937&SUBSYS_20F017AA&REV_03\3&11583659&0&D00xFFFFFFFF16
PCI\VEN_8086&DEV_294A&SUBSYS_20F317AA&REV_03\3&11583659&0&E50xFFFFFFFF16
PCI\VEN_197B&DEV_2381&SUBSYS_212D17AA&REV_00\4&398A18D&0&02E00xFFFFFFFF16
PCI\VEN_8086&DEV_2940&SUBSYS_20F317AA&REV_03\3&11583659&0&E00xFFFFFFFF17
PCI\VEN_8086&DEV_2948&SUBSYS_20F317AA&REV_03\3&11583659&0&E40xFFFFFFFF17
PCI\VEN_8086&DEV_2936&SUBSYS_20F017AA&REV_03\3&11583659&0&EA0xFFFFFFFF18
PCI\VEN_8086&DEV_2944&SUBSYS_20F317AA&REV_03\3&11583659&0&E20xFFFFFFFF18
PCI\VEN_8086&DEV_2935&SUBSYS_20F017AA&REV_03\3&11583659&0&E90xFFFFFFFF19
PCI\VEN_8086&DEV_2946&SUBSYS_20F317AA&REV_03\3&11583659&0&E30xFFFFFFFF19
PCI\VEN_8086&DEV_2939&SUBSYS_20F017AA&REV_03\3&11583659&0&D20xFFFFFFFF19
PCI\VEN_8086&DEV_293C&SUBSYS_20F117AA&REV_03\3&11583659&0&D70xFFFFFFFF19
PCI\VEN_8086&DEV_2938&SUBSYS_20F017AA&REV_03\3&11583659&0&D10xFFFFFFFF21
PCI\VEN_8086&DEV_293E&SUBSYS_20F217AA&REV_03\3&11583659&0&D80xFFFFFFFF22
PCI\VEN_8086&DEV_293A&SUBSYS_20F117AA&REV_03\3&11583659&0&EF0xFFFFFFFF23
PCI\VEN_8086&DEV_2934&SUBSYS_20F017AA&REV_03\3&11583659&0&E80xFFFFFFFF23
ACPI_HAL\PNP0C08\00xFFFFFFFF81
PCI\VEN_10EC&DEV_8168&SUBSYS_213117AA&REV_03\4&7377E88&0&00E50x14294967292
PCI\VEN_8086&DEV_4237&SUBSYS_13118086&REV_00\4&2B2D7F93&0&00E30x04294967293
PCI\VEN_8086&DEV_2A42&SUBSYS_213A17AA&REV_07\3&11583659&0&100x04294967294
Desktop Rating
Desktop RatingTop: of  1 
QueryQuery Result
root\cimv2:SELECT CPUScore, D3DScore, DiskScore, GraphicsScore, MemoryScore FROM Win32_WinSAT0x0
Returned Objects
Win32_WinSAT.TimeTaken="MostRecentAssessment"
PropertyValue
CPUScore5
D3DScore3.3
DiskScore5.5
GraphicsScore3.3
MemoryScore5
TimeTakenMostRecentAssessment
BIOS
BIOSTop: of  2 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_BIOS0x0
Returned Objects
Win32_BIOS.Name="Ver 1.00PARTTBL",SoftwareElementID="Ver 1.00PARTTBL",SoftwareElementState=3,TargetOperatingSystem=0,Version="LENOVO - 1230"
PropertyValue
DescriptionVer 1.00PARTTBL
NameVer 1.00PARTTBL
PrimaryBIOS-1
ReleaseDate20091019000000.000000+000
SerialNumberLRGHD69
SMBIOSBIOSVersion6JET65WW (1.23 )
SMBIOSMajorVersion2
SMBIOSMinorVersion5
SMBIOSPresent-1
SoftwareElementIDVer 1.00PARTTBL
SoftwareElementState3
TargetOperatingSystem0
VersionLENOVO - 1230
root\cimv2:SELECT * FROM Win32_SystemBIOS0x0
Returned Objects
Win32_SystemBIOS.GroupComponent="\\\\MR_PRYOR-PC\\root\\cimv2:Win32_ComputerSystem.Name=\"MR_PRYOR-PC\"",PartComponent="\\\\MR_PRYOR-PC\\root\\cimv2:Win32_BIOS.Name=\"Ver 1.00PARTTBL\",SoftwareElementID=\"Ver 1.00PARTTBL\",SoftwareElementState=3,TargetOperatingSystem=0,Version=\"LENOVO - 1230\""
PropertyValue
GroupComponent\\MR_PRYOR-PC\root\cimv2:Win32_ComputerSystem.Name="MR_PRYOR-PC"
PartComponent\\MR_PRYOR-PC\root\cimv2:Win32_BIOS.Name="Ver 1.00PARTTBL",SoftwareElementID="Ver 1.00PARTTBL",SoftwareElementState=3,TargetOperatingSystem=0,Version="LENOVO - 1230"
Devices
Controller ClassesTop: of  6 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_1394Controller0x0
Returned Objects
root\cimv2:SELECT * FROM Win32_FloppyController0x0
Returned Objects
root\cimv2:SELECT * FROM Win32_IDEController0x0
Returned Objects
Win32_IDEController.DeviceID="PCIIDE\\IDECHANNEL\\4&9614586&0&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionIDE Channel
NameATA Channel 0
ProtocolSupported37
Win32_IDEController.DeviceID="PCIIDE\\IDECHANNEL\\4&9614586&0&1"
PropertyValue
ConfigManagerErrorCode0
DescriptionIDE Channel
NameATA Channel 1
ProtocolSupported37
Win32_IDEController.DeviceID="PCI\\VEN_8086&DEV_2928&SUBSYS_20F817AA&REV_03\\3&11583659&0&FA"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9M/M-E 2 port Serial ATA Storage Controller 1 - 2928
NameIntel(R) ICH9M/M-E 2 port Serial ATA Storage Controller 1 - 2928
ProtocolSupported37
root\cimv2:SELECT * FROM Win32_SCSIController0x0
Returned Objects
root\cimv2:SELECT * FROM Win32_USBController0x0
Returned Objects
Win32_USBController.DeviceID="PCI\\VEN_8086&DEV_2935&SUBSYS_20F017AA&REV_03\\3&11583659&0&E9"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB Universal Host Controller - 2935
NameIntel(R) ICH9 Family USB Universal Host Controller - 2935
ProtocolSupported16
Win32_USBController.DeviceID="PCI\\VEN_8086&DEV_2936&SUBSYS_20F017AA&REV_03\\3&11583659&0&EA"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB Universal Host Controller - 2936
NameIntel(R) ICH9 Family USB Universal Host Controller - 2936
ProtocolSupported16
Win32_USBController.DeviceID="PCI\\VEN_8086&DEV_2937&SUBSYS_20F017AA&REV_03\\3&11583659&0&D0"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB Universal Host Controller - 2937
NameIntel(R) ICH9 Family USB Universal Host Controller - 2937
ProtocolSupported16
Win32_USBController.DeviceID="PCI\\VEN_8086&DEV_2938&SUBSYS_20F017AA&REV_03\\3&11583659&0&D1"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB Universal Host Controller - 2938
NameIntel(R) ICH9 Family USB Universal Host Controller - 2938
ProtocolSupported16
Win32_USBController.DeviceID="PCI\\VEN_8086&DEV_2939&SUBSYS_20F017AA&REV_03\\3&11583659&0&D2"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB Universal Host Controller - 2939
NameIntel(R) ICH9 Family USB Universal Host Controller - 2939
ProtocolSupported16
Win32_USBController.DeviceID="PCI\\VEN_8086&DEV_293A&SUBSYS_20F117AA&REV_03\\3&11583659&0&EF"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB2 Enhanced Host Controller - 293A
NameIntel(R) ICH9 Family USB2 Enhanced Host Controller - 293A
ProtocolSupported16
Win32_USBController.DeviceID="PCI\\VEN_8086&DEV_293C&SUBSYS_20F117AA&REV_03\\3&11583659&0&D7"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB2 Enhanced Host Controller - 293C
NameIntel(R) ICH9 Family USB2 Enhanced Host Controller - 293C
ProtocolSupported16
Win32_USBController.DeviceID="PCI\\VEN_8086&DEV_2934&SUBSYS_20F017AA&REV_03\\3&11583659&0&E8"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB Universal Host Controller - 2934
NameIntel(R) ICH9 Family USB Universal Host Controller - 2934
ProtocolSupported16
root\cimv2:SELECT * FROM Win32_USBHub0x0
Returned Objects
Win32_USBHub.DeviceID="USB\\ROOT_HUB20\\4&2F6D72DD&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Win32_USBHub.DeviceID="USB\\ROOT_HUB\\4&14BAE781&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Win32_USBHub.DeviceID="USB\\ROOT_HUB\\4&244BAFA7&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Win32_USBHub.DeviceID="USB\\ROOT_HUB\\4&2A2A2FF4&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Win32_USBHub.DeviceID="USB\\ROOT_HUB\\4&39BAF81A&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Win32_USBHub.DeviceID="USB\\ROOT_HUB\\4&7B13611&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Win32_USBHub.DeviceID="USB\\ROOT_HUB\\4&B460F2&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Win32_USBHub.DeviceID="USB\\ROOT_HUB20\\4&2A372ADE&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Cooling ClassesTop: of  4 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_Fan0x0
Returned Objects
root\cimv2:SELECT * FROM Win32_HeatPipe0x0
Returned Objects
root\cimv2:SELECT * FROM Win32_Refrigeration0x0
Returned Objects
root\cimv2:SELECT * FROM Win32_TemperatureProbe0x0
Returned Objects
Input ClassesTop: of  2 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_Keyboard0x0
Returned Objects
Win32_Keyboard.DeviceID="ACPI\\PNP0303\\4&19087A06&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionStandard PS/2 Keyboard
Layout00000409
NameEnhanced (101- or 102-key)
NumberOfFunctionKeys12
PowerManagementSupported0
root\cimv2:SELECT * FROM Win32_PointingDevice0x0
Returned Objects
Win32_PointingDevice.DeviceID="USB\\VID_04B4&PID_0033\\5&51BE3A4&0&1"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Input Device
DeviceInterface162
HardwareTypeUSB Input Device
InfFileNameinput.inf
InfSectionHID_Inst
NameUSB Input Device
NumberOfButtons0
PointingType2
PowerManagementSupported0
Win32_PointingDevice.DeviceID="ACPI\\LEN0017\\4&19087A06&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionPS/2 Compatible Mouse
DeviceInterface4
HardwareTypePS/2 Compatible Mouse
InfFileNamemsmouse.inf
InfSectionPS2_Inst
NamePS/2 Compatible Mouse
NumberOfButtons0
PointingType2
PowerManagementSupported0
Memory ClassesTop: of  3 
QueryQuery Result
root\cimv2:SELECT __RELPATH, Availability, Status, StatusInfo FROM Win32_CacheMemory0x0
Returned Objects
Win32_CacheMemory.DeviceID="Cache Memory 0"
PropertyValue
Availability3
StatusInfo3
Win32_CacheMemory.DeviceID="Cache Memory 1"
PropertyValue
Availability3
StatusInfo3
root\cimv2:SELECT __RELPATH, Availability, Status FROM Win32_DMAChannel0x0
Returned Objects
Win32_DMAChannel.DMAChannel=4
PropertyValue
Availability4
DMAChannel4
root\cimv2:SELECT __RELPATH, Description, Status FROM Win32_SystemMemoryResource0x0
Returned Objects
Win32_DeviceMemoryAddress.StartingAddress="4275044352"
PropertyValue
Description0xFED00000-0xFED003FF
StartingAddress4275044352
Win32_PortResource.StartingAddress="6304"
PropertyValue
Description0x000018A0-0x000018BF
StartingAddress6304
Win32_DeviceMemoryAddress.StartingAddress="4063232000"
PropertyValue
Description0xF2300000-0xF23000FF
StartingAddress4063232000
Win32_DeviceMemoryAddress.StartingAddress="4061134848"
PropertyValue
Description0xF2100000-0xF21FFFFF
StartingAddress4061134848
Win32_DeviceMemoryAddress.StartingAddress="4063234048"
PropertyValue
Description0xF2300800-0xF23008FF
StartingAddress4063234048
Win32_DeviceMemoryAddress.StartingAddress="4062183424"
PropertyValue
Description0xF2200000-0xF2201FFF
StartingAddress4062183424
Win32_DeviceMemoryAddress.StartingAddress="655360"
PropertyValue
Description0xA0000-0xBFFFF
StartingAddress655360
Win32_DeviceMemoryAddress.StartingAddress="868352"
PropertyValue
Description0xD4000-0xD7FFF
StartingAddress868352
Win32_DeviceMemoryAddress.StartingAddress="884736"
PropertyValue
Description0xD8000-0xDBFFF
StartingAddress884736
Win32_DeviceMemoryAddress.StartingAddress="901120"
PropertyValue
Description0xDC000-0xDFFFF
StartingAddress901120
Win32_DeviceMemoryAddress.StartingAddress="2147483648"
PropertyValue
Description0x80000000-0xFEBFFFFF
StartingAddress2147483648
Win32_DeviceMemoryAddress.StartingAddress="4275159040"
PropertyValue
Description0xFED1C000-0xFED1FFFF
StartingAddress4275159040
Win32_DeviceMemoryAddress.StartingAddress="4275109888"
PropertyValue
Description0xFED10000-0xFED13FFF
StartingAddress4275109888
Win32_DeviceMemoryAddress.StartingAddress="4275142656"
PropertyValue
Description0xFED18000-0xFED18FFF
StartingAddress4275142656
Win32_DeviceMemoryAddress.StartingAddress="4275146752"
PropertyValue
Description0xFED19000-0xFED19FFF
StartingAddress4275146752
Win32_DeviceMemoryAddress.StartingAddress="3758096384"
PropertyValue
Description0xE0000000-0xEFFFFFFF
StartingAddress3758096384
Win32_DeviceMemoryAddress.StartingAddress="4275175424"
PropertyValue
Description0xFED20000-0xFED3FFFF
StartingAddress4275175424
Win32_DeviceMemoryAddress.StartingAddress="4275306496"
PropertyValue
Description0xFED40000-0xFED44FFF
StartingAddress4275306496
Win32_DeviceMemoryAddress.StartingAddress="4063235072"
PropertyValue
Description0xF2300C00-0xF2300CFF
StartingAddress4063235072
Win32_DeviceMemoryAddress.StartingAddress="4093640704"
PropertyValue
Description0xF4000000-0xF5FFFFFF
StartingAddress4093640704
Win32_DeviceMemoryAddress.StartingAddress="4026531840"
PropertyValue
Description0xF0000000-0xF1FFFFFF
StartingAddress4026531840
Win32_DeviceMemoryAddress.StartingAddress="4070589440"
PropertyValue
Description0xF2A04400-0xF2A047FF
StartingAddress4070589440
Win32_DeviceMemoryAddress.StartingAddress="4060086272"
PropertyValue
Description0xF2000000-0xF20FFFFF
StartingAddress4060086272
Win32_DeviceMemoryAddress.StartingAddress="4060102656"
PropertyValue
Description0xF2004000-0xF2004FFF
StartingAddress4060102656
Win32_DeviceMemoryAddress.StartingAddress="4070588416"
PropertyValue
Description0xF2A04000-0xF2A043FF
StartingAddress4070588416
Win32_DeviceMemoryAddress.StartingAddress="4278190080"
PropertyValue
Description0xFF000000-0xFFFFFFFF
StartingAddress4278190080
Win32_DeviceMemoryAddress.StartingAddress="4063233024"
PropertyValue
Description0xF2300400-0xF23004FF
StartingAddress4063233024
Win32_DeviceMemoryAddress.StartingAddress="4070572032"
PropertyValue
Description0xF2A00000-0xF2A03FFF
StartingAddress4070572032
Win32_DeviceMemoryAddress.StartingAddress="4064280576"
PropertyValue
Description0xF2400000-0xF27FFFFF
StartingAddress4064280576
Win32_DeviceMemoryAddress.StartingAddress="3489660928"
PropertyValue
Description0xD0000000-0xDFFFFFFF
StartingAddress3489660928
Win32_PortResource.StartingAddress="0"
PropertyValue
Description0x00000000-0x0000001F
StartingAddress0
Win32_PortResource.StartingAddress="129"
PropertyValue
Description0x00000081-0x00000091
StartingAddress129
Win32_PortResource.StartingAddress="147"
PropertyValue
Description0x00000093-0x0000009F
StartingAddress147
Win32_PortResource.StartingAddress="192"
PropertyValue
Description0x000000C0-0x000000DF
StartingAddress192
Win32_PortResource.StartingAddress="96"
PropertyValue
Description0x00000060-0x00000060
StartingAddress96
Win32_PortResource.StartingAddress="100"
PropertyValue
Description0x00000064-0x00000064
StartingAddress100
Win32_PortResource.StartingAddress="6336"
PropertyValue
Description0x000018C0-0x000018DF
StartingAddress6336
Win32_PortResource.StartingAddress="3328"
PropertyValue
Description0x00000D00-0x0000FFFF
StartingAddress3328
Win32_PortResource.StartingAddress="112"
PropertyValue
Description0x00000070-0x00000077
StartingAddress112
Win32_PortResource.StartingAddress="6176"
PropertyValue
Description0x00001820-0x0000183F
StartingAddress6176
Win32_PortResource.StartingAddress="496"
PropertyValue
Description0x000001F0-0x000001F7
StartingAddress496
Win32_PortResource.StartingAddress="1014"
PropertyValue
Description0x000003F6-0x000003F6
StartingAddress1014
Win32_PortResource.StartingAddress="46"
PropertyValue
Description0x0000002E-0x0000002F
StartingAddress46
Win32_PortResource.StartingAddress="78"
PropertyValue
Description0x0000004E-0x0000004F
StartingAddress78
Win32_PortResource.StartingAddress="97"
PropertyValue
Description0x00000061-0x00000061
StartingAddress97
Win32_PortResource.StartingAddress="99"
PropertyValue
Description0x00000063-0x00000063
StartingAddress99
Win32_PortResource.StartingAddress="101"
PropertyValue
Description0x00000065-0x00000065
StartingAddress101
Win32_PortResource.StartingAddress="103"
PropertyValue
Description0x00000067-0x00000067
StartingAddress103
Win32_PortResource.StartingAddress="128"
PropertyValue
Description0x00000080-0x00000080
StartingAddress128
Win32_PortResource.StartingAddress="146"
PropertyValue
Description0x00000092-0x00000092
StartingAddress146
Win32_PortResource.StartingAddress="178"
PropertyValue
Description0x000000B2-0x000000B3
StartingAddress178
Win32_PortResource.StartingAddress="1664"
PropertyValue
Description0x00000680-0x0000069F
StartingAddress1664
Win32_PortResource.StartingAddress="1152"
PropertyValue
Description0x00000480-0x0000048F
StartingAddress1152
Win32_PortResource.StartingAddress="65535"
PropertyValue
Description0x0000FFFF-0x0000FFFF
StartingAddress65535
Win32_PortResource.StartingAddress="1024"
PropertyValue
Description0x00000400-0x0000047F
StartingAddress1024
Win32_PortResource.StartingAddress="4480"
PropertyValue
Description0x00001180-0x000011FF
StartingAddress4480
Win32_PortResource.StartingAddress="5632"
PropertyValue
Description0x00001600-0x000016FE
StartingAddress5632
Win32_PortResource.StartingAddress="65024"
PropertyValue
Description0x0000FE00-0x0000FE00
StartingAddress65024
Win32_PortResource.StartingAddress="104"
PropertyValue
Description0x00000068-0x00000068
StartingAddress104
Win32_PortResource.StartingAddress="108"
PropertyValue
Description0x0000006C-0x0000006C
StartingAddress108
Win32_PortResource.StartingAddress="1792"
PropertyValue
Description0x00000700-0x0000070F
StartingAddress1792
Win32_PortResource.StartingAddress="368"
PropertyValue
Description0x00000170-0x00000177
StartingAddress368
Win32_PortResource.StartingAddress="886"
PropertyValue
Description0x00000376-0x00000376
StartingAddress886
Win32_PortResource.StartingAddress="240"
PropertyValue
Description0x000000F0-0x000000F0
StartingAddress240
Win32_PortResource.StartingAddress="6208"
PropertyValue
Description0x00001840-0x0000185F
StartingAddress6208
Win32_PortResource.StartingAddress="98"
PropertyValue
Description0x00000062-0x00000062
StartingAddress98
Win32_PortResource.StartingAddress="102"
PropertyValue
Description0x00000066-0x00000066
StartingAddress102
Win32_PortResource.StartingAddress="6240"
PropertyValue
Description0x00001860-0x0000187F
StartingAddress6240
Win32_PortResource.StartingAddress="8192"
PropertyValue
Description0x00002000-0x00002FFF
StartingAddress8192
Win32_PortResource.StartingAddress="6368"
PropertyValue
Description0x000018E0-0x000018EF
StartingAddress6368
Win32_PortResource.StartingAddress="6160"
PropertyValue
Description0x00001810-0x0000181F
StartingAddress6160
Win32_PortResource.StartingAddress="12288"
PropertyValue
Description0x00003000-0x00003FFF
StartingAddress12288
Win32_PortResource.StartingAddress="7168"
PropertyValue
Description0x00001C00-0x00001C1F
StartingAddress7168
Win32_PortResource.StartingAddress="32"
PropertyValue
Description0x00000020-0x00000021
StartingAddress32
Win32_PortResource.StartingAddress="36"
PropertyValue
Description0x00000024-0x00000025
StartingAddress36
Win32_PortResource.StartingAddress="40"
PropertyValue
Description0x00000028-0x00000029
StartingAddress40
Win32_PortResource.StartingAddress="44"
PropertyValue
Description0x0000002C-0x0000002D
StartingAddress44
Win32_PortResource.StartingAddress="48"
PropertyValue
Description0x00000030-0x00000031
StartingAddress48
Win32_PortResource.StartingAddress="52"
PropertyValue
Description0x00000034-0x00000035
StartingAddress52
Win32_PortResource.StartingAddress="56"
PropertyValue
Description0x00000038-0x00000039
StartingAddress56
Win32_PortResource.StartingAddress="60"
PropertyValue
Description0x0000003C-0x0000003D
StartingAddress60
Win32_PortResource.StartingAddress="160"
PropertyValue
Description0x000000A0-0x000000A1
StartingAddress160
Win32_PortResource.StartingAddress="164"
PropertyValue
Description0x000000A4-0x000000A5
StartingAddress164
Win32_PortResource.StartingAddress="168"
PropertyValue
Description0x000000A8-0x000000A9
StartingAddress168
Win32_PortResource.StartingAddress="172"
PropertyValue
Description0x000000AC-0x000000AD
StartingAddress172
Win32_PortResource.StartingAddress="176"
PropertyValue
Description0x000000B0-0x000000B1
StartingAddress176
Win32_PortResource.StartingAddress="180"
PropertyValue
Description0x000000B4-0x000000B5
StartingAddress180
Win32_PortResource.StartingAddress="184"
PropertyValue
Description0x000000B8-0x000000B9
StartingAddress184
Win32_PortResource.StartingAddress="188"
PropertyValue
Description0x000000BC-0x000000BD
StartingAddress188
Win32_PortResource.StartingAddress="1232"
PropertyValue
Description0x000004D0-0x000004D1
StartingAddress1232
Win32_PortResource.StartingAddress="6272"
PropertyValue
Description0x00001880-0x0000189F
StartingAddress6272
Win32_PortResource.StartingAddress="6144"
PropertyValue
Description0x00001800-0x00001807
StartingAddress6144
Win32_PortResource.StartingAddress="944"
PropertyValue
Description0x000003B0-0x000003BB
StartingAddress944
Win32_PortResource.StartingAddress="960"
PropertyValue
Description0x000003C0-0x000003DF
StartingAddress960
Win32_PortResource.StartingAddress="64"
PropertyValue
Description0x00000040-0x00000043
StartingAddress64
Win32_PortResource.StartingAddress="80"
PropertyValue
Description0x00000050-0x00000053
StartingAddress80
Motherboard ClassesTop: of  8 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_Bus0x0
Returned Objects
Win32_Bus.DeviceID="PNP_BUS_0"
PropertyValue
BusNum0
BusType15
DescriptionBus
NameBus
Win32_Bus.DeviceID="PCI_BUS_2"
PropertyValue
BusNum2
BusType5
DescriptionBus
NameBus
Win32_Bus.DeviceID="PCI_BUS_0"
PropertyValue
BusNum0
BusType5
DescriptionBus
NameBus
Win32_Bus.DeviceID="PCI_BUS_5"
PropertyValue
BusNum5
BusType5
DescriptionBus
NameBus
Win32_Bus.DeviceID="PCI_BUS_8"
PropertyValue
BusNum8
BusType5
DescriptionBus
NameBus
root\cimv2:SELECT * FROM Win32_InfraredDevice0x0
Returned Objects
root\cimv2:SELECT * FROM Win32_MotherboardDevice0x0
Returned Objects
Win32_MotherboardDevice.DeviceID="Motherboard"
PropertyValue
Availability3
DescriptionMotherboard
NameMotherboard
PrimaryBusTypePCI
SecondaryBusTypeISA
root\cimv2:SELECT * FROM Win32_OnBoardDevice0x0
Returned Objects
Win32_OnBoardDevice.Tag="On Board Device 0"
PropertyValue
DescriptionHD-Audio
DeviceType7
Enabled0
NameOn Board Device
TagOn Board Device 0
root\cimv2:SELECT * FROM Win32_PCMCIAController0x0
Returned Objects
root\cimv2:SELECT * FROM Win32_Processor0x0
Returned Objects
Win32_Processor.DeviceID="CPU0"
PropertyValue
AddressWidth64
Architecture9
Availability3
CpuStatus1
CurrentClockSpeed2001
CurrentVoltage33
DataWidth64
DescriptionIntel64 Family 6 Model 15 Stepping 13
ExtClock200
Family190
L2CacheSize2048
L3CacheSize0
L3CacheSpeed0
Level6
LoadPercentage55
MaxClockSpeed2001
NameIntel(R) Core(TM)2 Duo CPU T5870 @ 2.00GHz
NumberOfCores2
NumberOfLogicalProcessors2
PowerManagementSupported0
ProcessorIdBFEBFBFF000006FD
ProcessorType3
Revision3853
RoleCPU
SocketDesignationU2E1
StatusInfo3
Stepping13
UpgradeMethod4
VersionModel 15, Stepping 13
VoltageCaps2
root\cimv2:SELECT * FROM Win32_SoundDevice0x0
Returned Objects
Win32_SoundDevice.DeviceID="HDAUDIO\\FUNC_01&VEN_10EC&DEV_0269&SUBSYS_17AA212C&REV_1000\\4&847CD8C&0&0001"
PropertyValue
ConfigManagerErrorCode0
DescriptionRealtek High Definition Audio
NameRealtek High Definition Audio
PowerManagementSupported0
ProductNameRealtek High Definition Audio
StatusInfo3
Win32_SoundDevice.DeviceID="HDAUDIO\\FUNC_01&VEN_8086&DEV_2802&SUBSYS_80860101&REV_1000\\4&847CD8C&0&0301"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) High Definition Audio HDMI
NameIntel(R) High Definition Audio HDMI
PowerManagementSupported0
ProductNameIntel(R) High Definition Audio HDMI
StatusInfo3
root\cimv2:SELECT * FROM Win32_SystemSlot0x0
Returned Objects
Win32_SystemSlot.Tag="System Slot 0"
PropertyValue
CurrentUsage3
DescriptionSystem Slot
MaxDataWidth5
NameSystem Slot
PMESignal0
Shared0
SlotDesignationExpressCard Slot 1
SupportsHotPlug-1
TagSystem Slot 0
Win32_SystemSlot.Tag="System Slot 1"
PropertyValue
CurrentUsage3
DescriptionSystem Slot
MaxDataWidth2
NameSystem Slot
Number1
PMESignal-1
Shared0
SlotDesignationCardBus Slot 1
SupportsHotPlug-1
TagSystem Slot 1
Win32_SystemSlot.Tag="System Slot 2"
PropertyValue
CurrentUsage2
DescriptionSystem Slot
MaxDataWidth2
NameSystem Slot
PMESignal0
Shared0
SlotDesignationPCI Express Slot 1
StatusUnknown
SupportsHotPlug0
TagSystem Slot 2
Win32_SystemSlot.Tag="System Slot 3"
PropertyValue
CurrentUsage2
DescriptionSystem Slot
MaxDataWidth2
NameSystem Slot
PMESignal0
Shared0
SlotDesignationPCI Express Slot 2
StatusUnknown
SupportsHotPlug0
TagSystem Slot 3
Win32_SystemSlot.Tag="System Slot 4"
PropertyValue
CurrentUsage2
DescriptionSystem Slot
MaxDataWidth2
NameSystem Slot
PMESignal0
Shared0
SlotDesignationPCI Express Slot 3
StatusUnknown
SupportsHotPlug0
TagSystem Slot 4
Win32_SystemSlot.Tag="System Slot 5"
PropertyValue
CurrentUsage2
DescriptionSystem Slot
MaxDataWidth2
NameSystem Slot
PMESignal0
Shared0
SlotDesignationPCI Express Slot 4
StatusUnknown
SupportsHotPlug0
TagSystem Slot 5
Win32_SystemSlot.Tag="System Slot 6"
PropertyValue
CurrentUsage2
DescriptionSystem Slot
MaxDataWidth2
NameSystem Slot
PMESignal0
Shared0
SlotDesignationPCI Express Slot 5
StatusUnknown
SupportsHotPlug0
TagSystem Slot 6
Win32_SystemSlot.Tag="System Slot 7"
PropertyValue
CurrentUsage2
DescriptionSystem Slot
MaxDataWidth2
NameSystem Slot
PMESignal0
Shared0
SlotDesignationPCI Express Slot 6
StatusUnknown
SupportsHotPlug0
TagSystem Slot 7
Network ClassesTop: of  1 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_NetworkAdapter0x0
Returned Objects
Win32_NetworkAdapter.DeviceID="0"
PropertyValue
Availability3
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionWAN Miniport (SSTP)
Index0
Installed-1
InterfaceIndex2
ManufacturerMicrosoft
MaxNumberControlled0
NameWAN Miniport (SSTP)
PhysicalAdapter0
PowerManagementSupported0
ProductNameWAN Miniport (SSTP)
ServiceNameRasSstp
TimeOfLastReset20110420131136.375199-420
Win32_NetworkAdapter.DeviceID="1"
PropertyValue
Availability3
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionWAN Miniport (IKEv2)
Index1
Installed-1
InterfaceIndex17
ManufacturerMicrosoft
MaxNumberControlled0
NameWAN Miniport (IKEv2)
PhysicalAdapter0
PowerManagementSupported0
ProductNameWAN Miniport (IKEv2)
ServiceNameRasAgileVpn
TimeOfLastReset20110420131136.375199-420
Win32_NetworkAdapter.DeviceID="2"
PropertyValue
Availability3
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionWAN Miniport (L2TP)
Index2
Installed-1
InterfaceIndex3
ManufacturerMicrosoft
MaxNumberControlled0
NameWAN Miniport (L2TP)
PhysicalAdapter0
PowerManagementSupported0
ProductNameWAN Miniport (L2TP)
ServiceNameRasl2tp
TimeOfLastReset20110420131136.375199-420
Win32_NetworkAdapter.DeviceID="3"
PropertyValue
Availability3
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionWAN Miniport (PPTP)
Index3
Installed-1
InterfaceIndex4
ManufacturerMicrosoft
MaxNumberControlled0
NameWAN Miniport (PPTP)
PhysicalAdapter0
PowerManagementSupported0
ProductNameWAN Miniport (PPTP)
ServiceNamePptpMiniport
TimeOfLastReset20110420131136.375199-420
Win32_NetworkAdapter.DeviceID="4"
PropertyValue
Availability3
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionWAN Miniport (PPPOE)
Index4
Installed-1
InterfaceIndex5
ManufacturerMicrosoft
MaxNumberControlled0
NameWAN Miniport (PPPOE)
PhysicalAdapter0
PowerManagementSupported0
ProductNameWAN Miniport (PPPOE)
ServiceNameRasPppoe
TimeOfLastReset20110420131136.375199-420
Win32_NetworkAdapter.DeviceID="5"
PropertyValue
Availability3
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionWAN Miniport (IPv6)
Index5
Installed-1
InterfaceIndex6
ManufacturerMicrosoft
MaxNumberControlled0
NameWAN Miniport (IPv6)
PhysicalAdapter0
PowerManagementSupported0
ProductNameWAN Miniport (IPv6)
ServiceNameNdisWan
TimeOfLastReset20110420131136.375199-420
Win32_NetworkAdapter.DeviceID="6"
PropertyValue
Availability3
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionWAN Miniport (Network Monitor)
Index6
Installed-1
InterfaceIndex7
ManufacturerMicrosoft
MaxNumberControlled0
NameWAN Miniport (Network Monitor)
PhysicalAdapter0
PowerManagementSupported0
ProductNameWAN Miniport (Network Monitor)
ServiceNameNdisWan
TimeOfLastReset20110420131136.375199-420
Win32_NetworkAdapter.DeviceID="7"
PropertyValue
AdapterTypeEthernet 802.3
AdapterTypeId0
Availability3
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionRealtek PCIe GBE Family Controller
GUID{7584FDE8-FA0E-429B-9A6B-F8B4B8AF0487}
Index7
Installed-1
InterfaceIndex10
MACAddress00:26:9E:BC:CD:42
ManufacturerRealtek
MaxNumberControlled0
NameRealtek PCIe GBE Family Controller
NetConnectionIDLocal Area Connection
NetConnectionStatus2
NetEnabled-1
PhysicalAdapter-1
PowerManagementSupported0
ProductNameRealtek PCIe GBE Family Controller
ServiceNameRTL8167
Speed100000000
TimeOfLastReset20110420131136.375199-420
Win32_NetworkAdapter.DeviceID="8"
PropertyValue
Availability3
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionWAN Miniport (IP)
Index8
Installed-1
InterfaceIndex8
ManufacturerMicrosoft
MaxNumberControlled0
NameWAN Miniport (IP)
PhysicalAdapter0
PowerManagementSupported0
ProductNameWAN Miniport (IP)
ServiceNameNdisWan
TimeOfLastReset20110420131136.375199-420
Win32_NetworkAdapter.DeviceID="9"
PropertyValue
AdapterTypeTunnel
AdapterTypeId15
Availability3
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionMicrosoft ISATAP Adapter
Index9
Installed-1
InterfaceIndex11
ManufacturerMicrosoft
MaxNumberControlled0
NameMicrosoft ISATAP Adapter
PhysicalAdapter0
PowerManagementSupported0
ProductNameMicrosoft ISATAP Adapter
ServiceNametunnel
Speed100000
TimeOfLastReset20110420131136.375199-420
Win32_NetworkAdapter.DeviceID="10"
PropertyValue
Availability3
DescriptionRAS Async Adapter
Index10
Installed-1
InterfaceIndex9
MaxNumberControlled0
NameRAS Async Adapter
PhysicalAdapter0
PowerManagementSupported0
ProductNameRAS Async Adapter
TimeOfLastReset20110420131136.375199-420
Win32_NetworkAdapter.DeviceID="11"
PropertyValue
AdapterTypeTunnel
AdapterTypeId15
Availability3
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionMicrosoft Teredo Tunneling Adapter
Index11
Installed-1
InterfaceIndex12
ManufacturerMicrosoft
MaxNumberControlled0
NameTeredo Tunneling Pseudo-Interface
PhysicalAdapter0
PowerManagementSupported0
ProductNameMicrosoft Teredo Tunneling Adapter
ServiceNametunnel
Speed100000
TimeOfLastReset20110420131136.375199-420
Win32_NetworkAdapter.DeviceID="12"
PropertyValue
AdapterTypeEthernet 802.3
AdapterTypeId0
Availability3
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionIntel(R) WiFi Link 5100 AGN
GUID{35586859-9404-4138-B8C5-82931690817E}
Index12
Installed-1
InterfaceIndex13
MACAddress00:24:D6:58:21:F0
ManufacturerIntel Corporation
MaxNumberControlled0
NameIntel(R) WiFi Link 5100 AGN
NetConnectionIDWireless Network Connection
NetConnectionStatus7
NetEnabled0
PhysicalAdapter-1
PowerManagementSupported0
ProductNameIntel(R) WiFi Link 5100 AGN
ServiceNameNETw5s64
Speed0
TimeOfLastReset20110420131136.375199-420
Win32_NetworkAdapter.DeviceID="13"
PropertyValue
AdapterTypeTunnel
AdapterTypeId15
Availability3
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionMicrosoft ISATAP Adapter
Index13
Installed-1
InterfaceIndex14
ManufacturerMicrosoft
MaxNumberControlled0
NameMicrosoft ISATAP Adapter #2
PhysicalAdapter0
PowerManagementSupported0
ProductNameMicrosoft ISATAP Adapter
ServiceNametunnel
Speed30000000
TimeOfLastReset20110420131136.375199-420
Win32_NetworkAdapter.DeviceID="15"
PropertyValue
AdapterTypeTunnel
AdapterTypeId15
Availability3
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionMicrosoft ISATAP Adapter
Index15
Installed-1
InterfaceIndex15
ManufacturerMicrosoft
MaxNumberControlled0
NameMicrosoft ISATAP Adapter
PhysicalAdapter0
PowerManagementSupported0
ProductNameMicrosoft ISATAP Adapter
ServiceNametunnel
TimeOfLastReset20110420131136.375199-420
Win32_NetworkAdapter.DeviceID="16"
PropertyValue
AdapterTypeTunnel
AdapterTypeId15
Availability3
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionMicrosoft 6to4 Adapter
Index16
Installed-1
InterfaceIndex16
ManufacturerMicrosoft
MaxNumberControlled0
NameMicrosoft 6to4 Adapter
PhysicalAdapter0
PowerManagementSupported0
ProductNameMicrosoft 6to4 Adapter
ServiceNametunnel
TimeOfLastReset20110420131136.375199-420
Port ClassesTop: of  3 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_ParallelPort0x0
Returned Objects
root\cimv2:SELECT __RELPATH, Description, Status FROM Win32_PortResource0x0
Returned Objects
Win32_PortResource.StartingAddress="6304"
PropertyValue
Description0x000018A0-0x000018BF
StartingAddress6304
Win32_PortResource.StartingAddress="0"
PropertyValue
Description0x00000000-0x0000001F
StartingAddress0
Win32_PortResource.StartingAddress="129"
PropertyValue
Description0x00000081-0x00000091
StartingAddress129
Win32_PortResource.StartingAddress="147"
PropertyValue
Description0x00000093-0x0000009F
StartingAddress147
Win32_PortResource.StartingAddress="192"
PropertyValue
Description0x000000C0-0x000000DF
StartingAddress192
Win32_PortResource.StartingAddress="96"
PropertyValue
Description0x00000060-0x00000060
StartingAddress96
Win32_PortResource.StartingAddress="100"
PropertyValue
Description0x00000064-0x00000064
StartingAddress100
Win32_PortResource.StartingAddress="6336"
PropertyValue
Description0x000018C0-0x000018DF
StartingAddress6336
Win32_PortResource.StartingAddress="3328"
PropertyValue
Description0x00000D00-0x0000FFFF
StartingAddress3328
Win32_PortResource.StartingAddress="112"
PropertyValue
Description0x00000070-0x00000077
StartingAddress112
Win32_PortResource.StartingAddress="6176"
PropertyValue
Description0x00001820-0x0000183F
StartingAddress6176
Win32_PortResource.StartingAddress="496"
PropertyValue
Description0x000001F0-0x000001F7
StartingAddress496
Win32_PortResource.StartingAddress="1014"
PropertyValue
Description0x000003F6-0x000003F6
StartingAddress1014
Win32_PortResource.StartingAddress="46"
PropertyValue
Description0x0000002E-0x0000002F
StartingAddress46
Win32_PortResource.StartingAddress="78"
PropertyValue
Description0x0000004E-0x0000004F
StartingAddress78
Win32_PortResource.StartingAddress="97"
PropertyValue
Description0x00000061-0x00000061
StartingAddress97
Win32_PortResource.StartingAddress="99"
PropertyValue
Description0x00000063-0x00000063
StartingAddress99
Win32_PortResource.StartingAddress="101"
PropertyValue
Description0x00000065-0x00000065
StartingAddress101
Win32_PortResource.StartingAddress="103"
PropertyValue
Description0x00000067-0x00000067
StartingAddress103
Win32_PortResource.StartingAddress="128"
PropertyValue
Description0x00000080-0x00000080
StartingAddress128
Win32_PortResource.StartingAddress="146"
PropertyValue
Description0x00000092-0x00000092
StartingAddress146
Win32_PortResource.StartingAddress="178"
PropertyValue
Description0x000000B2-0x000000B3
StartingAddress178
Win32_PortResource.StartingAddress="1664"
PropertyValue
Description0x00000680-0x0000069F
StartingAddress1664
Win32_PortResource.StartingAddress="1152"
PropertyValue
Description0x00000480-0x0000048F
StartingAddress1152
Win32_PortResource.StartingAddress="65535"
PropertyValue
Description0x0000FFFF-0x0000FFFF
StartingAddress65535
Win32_PortResource.StartingAddress="1024"
PropertyValue
Description0x00000400-0x0000047F
StartingAddress1024
Win32_PortResource.StartingAddress="4480"
PropertyValue
Description0x00001180-0x000011FF
StartingAddress4480
Win32_PortResource.StartingAddress="5632"
PropertyValue
Description0x00001600-0x000016FE
StartingAddress5632
Win32_PortResource.StartingAddress="65024"
PropertyValue
Description0x0000FE00-0x0000FE00
StartingAddress65024
Win32_PortResource.StartingAddress="104"
PropertyValue
Description0x00000068-0x00000068
StartingAddress104
Win32_PortResource.StartingAddress="108"
PropertyValue
Description0x0000006C-0x0000006C
StartingAddress108
Win32_PortResource.StartingAddress="1792"
PropertyValue
Description0x00000700-0x0000070F
StartingAddress1792
Win32_PortResource.StartingAddress="368"
PropertyValue
Description0x00000170-0x00000177
StartingAddress368
Win32_PortResource.StartingAddress="886"
PropertyValue
Description0x00000376-0x00000376
StartingAddress886
Win32_PortResource.StartingAddress="240"
PropertyValue
Description0x000000F0-0x000000F0
StartingAddress240
Win32_PortResource.StartingAddress="6208"
PropertyValue
Description0x00001840-0x0000185F
StartingAddress6208
Win32_PortResource.StartingAddress="98"
PropertyValue
Description0x00000062-0x00000062
StartingAddress98
Win32_PortResource.StartingAddress="102"
PropertyValue
Description0x00000066-0x00000066
StartingAddress102
Win32_PortResource.StartingAddress="6240"
PropertyValue
Description0x00001860-0x0000187F
StartingAddress6240
Win32_PortResource.StartingAddress="8192"
PropertyValue
Description0x00002000-0x00002FFF
StartingAddress8192
Win32_PortResource.StartingAddress="6368"
PropertyValue
Description0x000018E0-0x000018EF
StartingAddress6368
Win32_PortResource.StartingAddress="6160"
PropertyValue
Description0x00001810-0x0000181F
StartingAddress6160
Win32_PortResource.StartingAddress="12288"
PropertyValue
Description0x00003000-0x00003FFF
StartingAddress12288
Win32_PortResource.StartingAddress="7168"
PropertyValue
Description0x00001C00-0x00001C1F
StartingAddress7168
Win32_PortResource.StartingAddress="32"
PropertyValue
Description0x00000020-0x00000021
StartingAddress32
Win32_PortResource.StartingAddress="36"
PropertyValue
Description0x00000024-0x00000025
StartingAddress36
Win32_PortResource.StartingAddress="40"
PropertyValue
Description0x00000028-0x00000029
StartingAddress40
Win32_PortResource.StartingAddress="44"
PropertyValue
Description0x0000002C-0x0000002D
StartingAddress44
Win32_PortResource.StartingAddress="48"
PropertyValue
Description0x00000030-0x00000031
StartingAddress48
Win32_PortResource.StartingAddress="52"
PropertyValue
Description0x00000034-0x00000035
StartingAddress52
Win32_PortResource.StartingAddress="56"
PropertyValue
Description0x00000038-0x00000039
StartingAddress56
Win32_PortResource.StartingAddress="60"
PropertyValue
Description0x0000003C-0x0000003D
StartingAddress60
Win32_PortResource.StartingAddress="160"
PropertyValue
Description0x000000A0-0x000000A1
StartingAddress160
Win32_PortResource.StartingAddress="164"
PropertyValue
Description0x000000A4-0x000000A5
StartingAddress164
Win32_PortResource.StartingAddress="168"
PropertyValue
Description0x000000A8-0x000000A9
StartingAddress168
Win32_PortResource.StartingAddress="172"
PropertyValue
Description0x000000AC-0x000000AD
StartingAddress172
Win32_PortResource.StartingAddress="176"
PropertyValue
Description0x000000B0-0x000000B1
StartingAddress176
Win32_PortResource.StartingAddress="180"
PropertyValue
Description0x000000B4-0x000000B5
StartingAddress180
Win32_PortResource.StartingAddress="184"
PropertyValue
Description0x000000B8-0x000000B9
StartingAddress184
Win32_PortResource.StartingAddress="188"
PropertyValue
Description0x000000BC-0x000000BD
StartingAddress188
Win32_PortResource.StartingAddress="1232"
PropertyValue
Description0x000004D0-0x000004D1
StartingAddress1232
Win32_PortResource.StartingAddress="6272"
PropertyValue
Description0x00001880-0x0000189F
StartingAddress6272
Win32_PortResource.StartingAddress="6144"
PropertyValue
Description0x00001800-0x00001807
StartingAddress6144
Win32_PortResource.StartingAddress="944"
PropertyValue
Description0x000003B0-0x000003BB
StartingAddress944
Win32_PortResource.StartingAddress="960"
PropertyValue
Description0x000003C0-0x000003DF
StartingAddress960
Win32_PortResource.StartingAddress="64"
PropertyValue
Description0x00000040-0x00000043
StartingAddress64
Win32_PortResource.StartingAddress="80"
PropertyValue
Description0x00000050-0x00000053
StartingAddress80
root\cimv2:SELECT __RELPATH, Availability, ConfigManagerUserConfig, Description, Status, StatusInfo FROM Win32_SerialPort0x0
Returned Objects
Power ClassesTop: of  2 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_Battery0x0
Returned Objects
Win32_Battery.DeviceID=" 210Panasonic42T4753"
PropertyValue
Availability2
BatteryStatus2
Chemistry6
DescriptionInternal Battery
DesignVoltage12450
EstimatedChargeRemaining100
EstimatedRunTime71582788
Name42T4753
PowerManagementSupported0
root\cimv2:SELECT * FROM Win32_PortableBattery0x0
Returned Objects
Printing ClassesTop: of  2 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_Printer0x0
Returned Objects
Win32_Printer.DeviceID="Microsoft XPS Document Writer"
PropertyValue
Attributes580
AveragePagesPerMinute0
Default-1
DefaultPriority0
DetectedErrorState0
Direct0
DoCompleteFirst-1
DriverNameMicrosoft XPS Document Writer
EnableBIDI0
EnableDevQueryPrint0
ExtendedDetectedErrorState0
ExtendedPrinterStatus2
Hidden0
HorizontalResolution600
JobCountSinceLastReset0
KeepPrintedJobs0
Local-1
NameMicrosoft XPS Document Writer
Network0
PortNameXPSPort:
PrinterState0
PrinterStatus3
PrintJobDataTypeRAW
PrintProcessorwinprint
Priority1
Published0
Queued0
RawOnly0
Shared0
SpoolEnabled-1
StatusUnknown
VerticalResolution600
WorkOffline0
Win32_Printer.DeviceID="Fax"
PropertyValue
Attributes16448
AveragePagesPerMinute0
Default0
DefaultPriority0
DetectedErrorState0
Direct0
DoCompleteFirst0
DriverNameMicrosoft Shared Fax Driver
EnableBIDI0
EnableDevQueryPrint0
ExtendedDetectedErrorState0
ExtendedPrinterStatus2
Hidden0
HorizontalResolution200
JobCountSinceLastReset0
KeepPrintedJobs0
Local-1
NameFax
Network0
PortNameSHRFAX:
PrinterState0
PrinterStatus3
PrintJobDataTypeRAW
PrintProcessorwinprint
Priority1
Published0
Queued0
RawOnly0
Shared0
SpoolEnabled-1
StatusUnknown
VerticalResolution200
WorkOffline0
root\cimv2:SELECT * FROM Win32_PrinterDriver0x0
Returned Objects
Win32_PrinterDriver.Name="Microsoft XPS Document Writer,3,Windows x64"
PropertyValue
ConfigFileC:\Windows\system32\spool\DRIVERS\x64\3\unidrvui.dll
DataFileC:\Windows\system32\spool\DRIVERS\x64\3\mxdwdui.gpd
DriverPathC:\Windows\system32\spool\DRIVERS\x64\3\mxdwdrv.dll
HelpFileC:\Windows\system32\spool\DRIVERS\x64\3\unidrv.hlp
NameMicrosoft XPS Document Writer,3,Windows x64
SupportedPlatformWindows x64
Version3
Win32_PrinterDriver.Name="Microsoft Shared Fax Driver,3,Windows x64"
PropertyValue
ConfigFileC:\Windows\system32\spool\DRIVERS\x64\3\FXSUI.DLL
DataFileC:\Windows\system32\spool\DRIVERS\x64\3\FXSUI.DLL
DriverPathC:\Windows\system32\spool\DRIVERS\x64\3\FXSDRV.DLL
NameMicrosoft Shared Fax Driver,3,Windows x64
SupportedPlatformWindows x64
Version3
Storage ClassesTop: of  4 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_CDROMDrive0x0
Returned Objects
Win32_CDROMDrive.DeviceID="IDE\\CDROMHL-DT-ST_DVDRAM_GSA-T50N________________RS06____\\5&7B34A8D&0&1.0.0"
PropertyValue
Availability3
CompressionMethodUnknown
ConfigManagerErrorCode0
DescriptionCD-ROM Drive
DriveD:
IdD:
MediaLoaded0
MediaTypeDVD Writer
MfrAssignedRevisionLevelRS06
NameHL-DT-ST DVDRAM GSA-T50N ATA Device
SCSIBus1
SCSILogicalUnit0
SCSIPort1
SCSITargetId0
TransferRate-1
Win32_CDROMDrive.DeviceID="DTSOFTBUS&REV1\\DTCDROM&REV1\\1&79F5D87&0&00"
PropertyValue
Availability3
CompressionMethodUnknown
ConfigManagerErrorCode0
DescriptionCD-ROM Drive
DriveE:
FileSystemFlagsEx17301509
IdE:
MaximumComponentLength110
MediaLoaded-1
MediaTypeDVD-ROM
MfrAssignedRevisionLevel1.05
NameDTSoftBusCd00
Size7084402688
TransferRate-1
VolumeNamePortal 2
VolumeSerialNumber8FF9EBBF
root\cimv2:SELECT * FROM Win32_DiskDrive0x0
Returned Objects
Win32_DiskDrive.DeviceID="\\\\.\\PHYSICALDRIVE0"
PropertyValue
BytesPerSector512
ConfigManagerErrorCode0
DescriptionDisk drive
FirmwareRevision14.01A14
Index0
InterfaceTypeIDE
MediaLoaded-1
MediaTypeFixed hard disk media
ModelWDC WD1600BEVS-08VAT2 ATA Device
Name\\.\PHYSICALDRIVE0
Partitions1
SCSIBus0
SCSILogicalUnit0
SCSIPort0
SCSITargetId0
SectorsPerTrack63
SerialNumber2020202057202d4458573056414543394a433157
Signature-1251756701
Size160039272960
TotalCylinders19457
TotalHeads255
TotalSectors312576705
TotalTracks4961535
TracksPerCylinder255
root\cimv2:SELECT * FROM Win32_FloppyDrive0x0
Returned Objects
root\cimv2:SELECT * FROM Win32_TapeDrive0x0
Returned Objects
Video ClassesTop: of  2 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_DesktopMonitor0x0
Returned Objects
Win32_DesktopMonitor.DeviceID="DesktopMonitor1"
PropertyValue
Availability3
DescriptionDefault Monitor
MonitorTypeDefault Monitor
NameDefault Monitor
PixelsPerXLogicalInch96
PixelsPerYLogicalInch96
ScreenHeight768
ScreenWidth1366
Win32_DesktopMonitor.DeviceID="DesktopMonitor2"
PropertyValue
Availability8
ConfigManagerErrorCode0
DescriptionThinkPad Display 1366x768
MonitorManufacturerLenovo
MonitorTypeThinkPad Display 1366x768
NameThinkPad Display 1366x768
PixelsPerXLogicalInch96
PixelsPerYLogicalInch96
root\cimv2:SELECT * FROM Win32_VideoController0x0
Returned Objects
Win32_VideoController.DeviceID="VideoController1"
PropertyValue
AdapterCompatibilityIntel Corporation
Availability3
ConfigManagerErrorCode0
CurrentBitsPerPixel32
CurrentHorizontalResolution1366
CurrentNumberOfColors4294967296
CurrentNumberOfColumns0
CurrentNumberOfRows0
CurrentRefreshRate50
CurrentScanMode4
CurrentVerticalResolution768
DescriptionMobile Intel(R) 4 Series Express Chipset Family
DitherType0
DriverDate20110211000000.000000-000
DriverVersion8.15.10.2302
InfFilenameoem44.inf
InfSectioniCNT1
InstalledDisplayDriversigdumd64.dll,igd10umd64.dll,igdumdx32,igd10umd32
MaxRefreshRate60
MinRefreshRate50
Monochrome0
NameMobile Intel(R) 4 Series Express Chipset Family
VideoArchitecture5
VideoMemoryType2
VideoModeDescription1366 x 768 x 4294967296 colors
Win32_VideoController.DeviceID="VideoController2"
PropertyValue
AdapterCompatibilityIntel Corporation
AdapterDACTypeInternal
AdapterRAM868673536
Availability8
ConfigManagerErrorCode0
DescriptionMobile Intel(R) 4 Series Express Chipset Family
DriverDate20110211000000.000000-000
DriverVersion8.15.10.2302
InfFilenameoem41.inf
InfSectioniCNT0
InstalledDisplayDriversigdumd64.dll,igd10umd64.dll,igdumdx32,igd10umd32
Monochrome0
NameMobile Intel(R) 4 Series Express Chipset Family
VideoArchitecture5
VideoMemoryType2
VideoProcessorMobile Intel(R) 4 Series Express Chipset Family
PlugAndPlay Classes
   
Top: of  1 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_PNPEntity0x0
Returned Objects
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_BEEP\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionBeep
NameBeep
ServiceBeep
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_NETBT\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionNETBT
NameNETBT
ServiceNetBT
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_TCPIP\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionTCP/IP Protocol Driver
NameTCP/IP Protocol Driver
ServiceTcpip
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\MS_NDISWANBH\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionWAN Miniport (Network Monitor)
NameWAN Miniport (Network Monitor)
Win32_PnPEntity.DeviceID="USB\\ROOT_HUB20\\4&2F6D72DD&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Win32_PnPEntity.DeviceID="ACPI\\PNP0103\\4&19087A06&0"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionHigh precision event timer
Manufacturer(Standard system devices)
NameHigh precision event timer
Status
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_KSECDD\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionKSecDD
NameKSecDD
ServiceKSecDD
StatusDegraded
Win32_PnPEntity.DeviceID="PCI\\VEN_197B&DEV_2382&SUBSYS_212E17AA&REV_00\\4&398A18D&0&00E0"
PropertyValue
ConfigManagerErrorCode0
DescriptionJMB38X SD/MMC Host Controller
NameJMB38X SD/MMC Host Controller
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2935&SUBSYS_20F017AA&REV_03\\3&11583659&0&E9"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB Universal Host Controller - 2935
NameIntel(R) ICH9 Family USB Universal Host Controller - 2935
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2940&SUBSYS_20F317AA&REV_03\\3&11583659&0&E0"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family PCI Express Root Port 1 - 2940
NameIntel(R) ICH9 Family PCI Express Root Port 1 - 2940
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2A43&SUBSYS_213A17AA&REV_07\\3&11583659&0&11"
PropertyValue
ConfigManagerErrorCode0
DescriptionMobile Intel(R) 4 Series Express Chipset Family
NameMobile Intel(R) 4 Series Express Chipset Family
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_TCPIPREG\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionTCP/IP Registry Compatibility
NameTCP/IP Registry Compatibility
Servicetcpipreg
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\MS_NDISWANIP\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionWAN Miniport (IP)
NameWAN Miniport (IP)
Win32_PnPEntity.DeviceID="HDAUDIO\\FUNC_01&VEN_10EC&DEV_0269&SUBSYS_17AA212C&REV_1000\\4&847CD8C&0&0001"
PropertyValue
ConfigManagerErrorCode0
DescriptionRealtek High Definition Audio
NameRealtek High Definition Audio
Win32_PnPEntity.DeviceID="ACPI\\PNP0200\\4&19087A06&0"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionDirect memory access controller
Manufacturer(Standard system devices)
NameDirect memory access controller
Status
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_KSECPKG\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionKSecPkg
NameKSecPkg
ServiceKSecPkg
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_NSIPROXY\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionNSI proxy service driver.
NameNSI proxy service driver.
Servicensiproxy
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_TDTCP\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionTDTCP
NameTDTCP
ServiceTDTCP
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\MS_NDISWANIPV6\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionWAN Miniport (IPv6)
NameWAN Miniport (IPv6)
Win32_PnPEntity.DeviceID="ACPI\\PNP0303\\4&19087A06&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionStandard PS/2 Keyboard
NameStandard PS/2 Keyboard
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_LLTDIO\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionLink-Layer Topology Discovery Mapper I/O Driver
NameLink-Layer Topology Discovery Mapper I/O Driver
Servicelltdio
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_CLFS\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionCommon Log (CLFS)
NameCommon Log (CLFS)
ServiceCLFS
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_TDX\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionNetIO Legacy TDI Support Driver
NameNetIO Legacy TDI Support Driver
Servicetdx
StatusDegraded
Win32_PnPEntity.DeviceID="PCI\\VEN_197B&DEV_2383&SUBSYS_212F17AA&REV_00\\4&398A18D&0&03E0"
PropertyValue
ConfigManagerErrorCode0
DescriptionJMB38X MS Host Controller
NameJMB38X MS Host Controller
Win32_PnPEntity.DeviceID="ROOT\\MS_PPPOEMINIPORT\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionWAN Miniport (PPPOE)
NameWAN Miniport (PPPOE)
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2936&SUBSYS_20F017AA&REV_03\\3&11583659&0&EA"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB Universal Host Controller - 2936
NameIntel(R) ICH9 Family USB Universal Host Controller - 2936
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2942&SUBSYS_20F317AA&REV_03\\3&11583659&0&E1"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family PCI Express Root Port 2 - 2942
NameIntel(R) ICH9 Family PCI Express Root Port 2 - 2942
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_4237&SUBSYS_13118086&REV_00\\4&2B2D7F93&0&00E3"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) WiFi Link 5100 AGN
NameIntel(R) WiFi Link 5100 AGN
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_CNG\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionCNG
NameCNG
ServiceCNG
StatusDegraded
Win32_PnPEntity.DeviceID="ACPI\\PNP0A08\\0"
PropertyValue
ConfigManagerErrorCode0
DescriptionPCI bus
NamePCI bus
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_NULL\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionNull
NameNull
ServiceNull
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_TPPWRIF\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionTPPWRIF
NameTPPWRIF
ServiceTPPWRIF
StatusDegraded
Win32_PnPEntity.DeviceID="HDAUDIO\\FUNC_01&VEN_8086&DEV_2802&SUBSYS_80860101&REV_1000\\4&847CD8C&0&0301"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) High Definition Audio HDMI
NameIntel(R) High Definition Audio HDMI
Win32_PnPEntity.DeviceID="ACPI\\PNP0B00\\4&19087A06&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionSystem CMOS/real time clock
NameSystem CMOS/real time clock
Win32_PnPEntity.DeviceID="ROOT\\MS_PPTPMINIPORT\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionWAN Miniport (PPTP)
NameWAN Miniport (PPTP)
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_CPUDRV64\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
Descriptioncpudrv64
Namecpudrv64
Servicecpudrv64
StatusDegraded
Win32_PnPEntity.DeviceID="ACPI\\ACPI0003\\2&DABA3FF&1"
PropertyValue
ConfigManagerErrorCode0
DescriptionMicrosoft AC Adapter
NameMicrosoft AC Adapter
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_PCW\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionPerformance Counters for Windows Driver
NamePerformance Counters for Windows Driver
Servicepcw
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_TSSECSRV\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionRemote Desktop Services Security Filter Driver
NameRemote Desktop Services Security Filter Driver
Servicetssecsrv
StatusDegraded
Win32_PnPEntity.DeviceID="ACPI\\PNP0C02\\1"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionMotherboard resources
Manufacturer(Standard system devices)
NameMotherboard resources
Status
Win32_PnPEntity.DeviceID="ROOT\\MS_SSTPMINIPORT\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionWAN Miniport (SSTP)
NameWAN Miniport (SSTP)
Win32_PnPEntity.DeviceID="ACPI\\FIXEDBUTTON\\2&DABA3FF&1"
PropertyValue
ConfigManagerErrorCode0
DescriptionACPI Fixed Feature Button
NameACPI Fixed Feature Button
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_PEAUTH\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionPEAUTH
NamePEAUTH
ServicePEAUTH
StatusDegraded
Win32_PnPEntity.DeviceID="PCI\\VEN_197B&DEV_2384&SUBSYS_213017AA&REV_00\\4&398A18D&0&04E0"
PropertyValue
ConfigManagerErrorCode0
DescriptionJMB38X xD Host Controller
NameJMB38X xD Host Controller
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2937&SUBSYS_20F017AA&REV_03\\3&11583659&0&D0"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB Universal Host Controller - 2937
NameIntel(R) ICH9 Family USB Universal Host Controller - 2937
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2944&SUBSYS_20F317AA&REV_03\\3&11583659&0&E2"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family PCI Express Root Port 3 - 2944
NameIntel(R) ICH9 Family PCI Express Root Port 3 - 2944
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_MOUNTMGR\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionMount Point Manager
NameMount Point Manager
Servicemountmgr
StatusDegraded
Win32_PnPEntity.DeviceID="PCIIDE\\IDECHANNEL\\4&9614586&0&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionIDE Channel
NameATA Channel 0
Win32_PnPEntity.DeviceID="SW\\{96E080C7-143C-11D1-B40F-00A0C9223196}\\{3C0D501A-140B-11D1-B40F-00A0C9223196}"
PropertyValue
ConfigManagerErrorCode0
DescriptionMicrosoft Streaming Service Proxy
NameMicrosoft Streaming Service Proxy
Win32_PnPEntity.DeviceID="ACPI\\PNP0C02\\2"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionMotherboard resources
Manufacturer(Standard system devices)
NameMotherboard resources
Status
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_DISCACHE\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionSystem Attribute Cache
NameSystem Attribute Cache
Servicediscache
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\RDP_KBD\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionTerminal Server Keyboard Driver
NameTerminal Server Keyboard Driver
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_PSCHED\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionQoS Packet Scheduler
NameQoS Packet Scheduler
ServicePsched
StatusDegraded
Win32_PnPEntity.DeviceID="STORAGE\\VOLUME\\{2958F16E-3D8E-11E0-931B-806E6F6E6963}#0000000000007E00"
PropertyValue
ConfigManagerErrorCode0
DescriptionGeneric volume
NameGeneric volume
Win32_PnPEntity.DeviceID="ACPI\\PNP0C02\\3"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionMotherboard resources
Manufacturer(Standard system devices)
NameMotherboard resources
Status
Win32_PnPEntity.DeviceID="ACPI\\GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_15_-_INTEL(R)_CORE(TM)2_DUO_CPU_____T5870__@_2.00GHZ\\_0"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel Processor
NameIntel(R) Core(TM)2 Duo CPU T5870 @ 2.00GHz
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_MPSDRV\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionWindows Firewall Authorization Driver
NameWindows Firewall Authorization Driver
Servicempsdrv
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_VGASAVE\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionVgaSave
NameVgaSave
ServiceVgaSave
StatusDegraded
Win32_PnPEntity.DeviceID="HID\\VID_04B4&PID_0033\\6&3AA15C74&0&0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionHID-compliant mouse
NameHID-compliant mouse
Win32_PnPEntity.DeviceID="PCIIDE\\IDECHANNEL\\4&9614586&0&1"
PropertyValue
ConfigManagerErrorCode0
DescriptionIDE Channel
NameATA Channel 1
Win32_PnPEntity.DeviceID="ROOT\\RDP_MOU\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionTerminal Server Mouse Driver
NameTerminal Server Mouse Driver
Win32_PnPEntity.DeviceID="ACPI\\PNP0C04\\4&19087A06&0"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionNumeric data processor
Manufacturer(Standard system devices)
NameNumeric data processor
Status
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_DXGKRNL\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionLDDM Graphics Subsystem
NameLDDM Graphics Subsystem
ServiceDXGKrnl
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_QWAVEDRV\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionQWAVE driver
NameQWAVE driver
ServiceQWAVEdrv
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\SYSTEM\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionPlug and Play Software Device Enumerator
NamePlug and Play Software Device Enumerator
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2448&SUBSYS_20F417AA&REV_93\\3&11583659&0&F0"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) 82801 PCI Bridge - 2448
NameIntel(R) 82801 PCI Bridge - 2448
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_VOLMGRX\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionDynamic Volume Manager
NameDynamic Volume Manager
Servicevolmgrx
StatusDegraded
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2938&SUBSYS_20F017AA&REV_03\\3&11583659&0&D1"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB Universal Host Controller - 2938
NameIntel(R) ICH9 Family USB Universal Host Controller - 2938
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2946&SUBSYS_20F317AA&REV_03\\3&11583659&0&E3"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family PCI Express Root Port 4 - 2946
NameIntel(R) ICH9 Family PCI Express Root Port 4 - 2946
Win32_PnPEntity.DeviceID="ACPI\\PNP0C09\\1"
PropertyValue
ConfigManagerErrorCode0
DescriptionMicrosoft ACPI-Compliant Embedded Controller
NameMicrosoft ACPI-Compliant Embedded Controller
Win32_PnPEntity.DeviceID="ROOT\\*6TO4MP\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionMicrosoft 6to4 Adapter
NameMicrosoft 6to4 Adapter
Win32_PnPEntity.DeviceID="ROOT\\SYSTEM\\0001"
PropertyValue
ConfigManagerErrorCode0
DescriptionDAEMON Tools Virtual Bus Driver
NameDAEMON Tools Virtual Bus Driver
Win32_PnPEntity.DeviceID="ACPI\\PNP0C0A\\1"
PropertyValue
ConfigManagerErrorCode0
DescriptionMicrosoft ACPI-Compliant Control Method Battery
NameMicrosoft ACPI-Compliant Control Method Battery
Win32_PnPEntity.DeviceID="UMB\\UMB\\1&841921D&0&PRINTERBUSENUMERATOR"
PropertyValue
ConfigManagerErrorCode0
DescriptionUMBus Enumerator
NameUMBus Enumerator
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_VOLSNAP\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionStorage volumes
NameStorage volumes
Servicevolsnap
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\*ISATAP\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionMicrosoft ISATAP Adapter
NameMicrosoft ISATAP Adapter
Win32_PnPEntity.DeviceID="IDE\\CDROMHL-DT-ST_DVDRAM_GSA-T50N________________RS06____\\5&7B34A8D&0&1.0.0"
PropertyValue
ConfigManagerErrorCode0
DescriptionCD-ROM Drive
NameHL-DT-ST DVDRAM GSA-T50N ATA Device
Win32_PnPEntity.DeviceID="STORAGE\\VOLUMESNAPSHOT\\HARDDISKVOLUMESNAPSHOT1"
PropertyValue
ConfigManagerErrorCode0
DescriptionGeneric volume shadow copy
NameGeneric volume shadow copy
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_EHDRV\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
Descriptionehdrv
Nameehdrv
Serviceehdrv
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\UMBUS\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionUMBus Root Bus Enumerator
NameUMBus Root Bus Enumerator
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_RDPCDD\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionRDPCDD
NameRDPCDD
ServiceRDPCDD
StatusDegraded
Win32_PnPEntity.DeviceID="USB\\VID_04B4&PID_0033\\5&51BE3A4&0&1"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Input Device
NameUSB Input Device
Win32_PnPEntity.DeviceID="ACPI\\PNP0C0C\\2&DABA3FF&1"
PropertyValue
ConfigManagerErrorCode0
DescriptionACPI Power Button
NameACPI Power Button
Win32_PnPEntity.DeviceID="ROOT\\*ISATAP\\0001"
PropertyValue
ConfigManagerErrorCode0
DescriptionMicrosoft ISATAP Adapter
NameMicrosoft ISATAP Adapter #2
Win32_PnPEntity.DeviceID="ROOT\\VDRVROOT\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionMicrosoft Virtual Drive Enumerator Driver
NameMicrosoft Virtual Drive Enumerator Driver
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_VWIFIFLT\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionVirtual WiFi Filter Driver
NameVirtual WiFi Filter Driver
Servicevwififlt
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_EPFWWFPR\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
Descriptionepfwwfpr
Nameepfwwfpr
Serviceepfwwfpr
StatusDegraded
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2919&SUBSYS_20F617AA&REV_03\\3&11583659&0&F8"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9M LPC Interface Controller - 2919
NameIntel(R) ICH9M LPC Interface Controller - 2919
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_RDPENCDD\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionRDP Encoder Mirror Driver
NameRDP Encoder Mirror Driver
ServiceRDPENCDD
StatusDegraded
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2939&SUBSYS_20F017AA&REV_03\\3&11583659&0&D2"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB Universal Host Controller - 2939
NameIntel(R) ICH9 Family USB Universal Host Controller - 2939
Win32_PnPEntity.DeviceID="ACPI\\GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_15_-_INTEL(R)_CORE(TM)2_DUO_CPU_____T5870__@_2.00GHZ\\_1"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel Processor
NameIntel(R) Core(TM)2 Duo CPU T5870 @ 2.00GHz
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2948&SUBSYS_20F317AA&REV_03\\3&11583659&0&E4"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family PCI Express Root Port 5 - 2948
NameIntel(R) ICH9 Family PCI Express Root Port 5 - 2948
Win32_PnPEntity.DeviceID="ROOT\\*ISATAP\\0002"
PropertyValue
ConfigManagerErrorCode0
DescriptionMicrosoft ISATAP Adapter
NameMicrosoft ISATAP Adapter #3
Win32_PnPEntity.DeviceID="ACPI\\PNP0C0D\\2&DABA3FF&1"
PropertyValue
ConfigManagerErrorCode0
DescriptionACPI Lid
NameACPI Lid
Win32_PnPEntity.DeviceID="ROOT\\VOLMGR\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionVolume Manager
NameVolume Manager
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_WANARPV6\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionRemote Access IPv6 ARP Driver
NameRemote Access IPv6 ARP Driver
ServiceWanarpv6
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\*TEREDO\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionMicrosoft Teredo Tunneling Adapter
NameTeredo Tunneling Pseudo-Interface
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_RDPREFMP\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionReflector Display Driver used to gain access to graphics data
NameReflector Display Driver used to gain access to graphics data
ServiceRDPREFMP
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_MSISADRV\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
Descriptionmsisadrv
Namemsisadrv
Servicemsisadrv
StatusDegraded
Win32_PnPEntity.DeviceID="ACPI\\PNP0C0E\\2&DABA3FF&1"
PropertyValue
ConfigManagerErrorCode0
DescriptionACPI Sleep Button
NameACPI Sleep Button
Win32_PnPEntity.DeviceID="USB\\ROOT_HUB\\4&14BAE781&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Win32_PnPEntity.DeviceID="ROOT\\ACPI_HAL\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionACPI x64-based PC
NameACPI x64-based PC
Win32_PnPEntity.DeviceID="IDE\\DISKWDC_WD1600BEVS-08VAT2___________________14.01A14\\5&1A6CFB32&0&0.0.0"
PropertyValue
ConfigManagerErrorCode0
DescriptionDisk drive
NameWDC WD1600BEVS-08VAT2 ATA Device
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_WDF01000\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionKernel Mode Driver Frameworks service
NameKernel Mode Driver Frameworks service
ServiceWdf01000
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_RDPWD\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionRDP Winstation Driver
NameRDP Winstation Driver
ServiceRDPWD
StatusDegraded
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2928&SUBSYS_20F817AA&REV_03\\3&11583659&0&FA"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9M/M-E 2 port Serial ATA Storage Controller 1 - 2928
NameIntel(R) ICH9M/M-E 2 port Serial ATA Storage Controller 1 - 2928
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_293A&SUBSYS_20F117AA&REV_03\\3&11583659&0&EF"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB2 Enhanced Host Controller - 293A
NameIntel(R) ICH9 Family USB2 Enhanced Host Controller - 293A
Win32_PnPEntity.DeviceID="ACPI\\PNP0C14\\0"
PropertyValue
ConfigManagerErrorCode0
DescriptionMicrosoft Windows Management Interface for ACPI
NameMicrosoft Windows Management Interface for ACPI
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_294A&SUBSYS_20F317AA&REV_03\\3&11583659&0&E5"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family PCI Express Root Port 6 - 294A
NameIntel(R) ICH9 Family PCI Express Root Port 6 - 294A
Win32_PnPEntity.DeviceID="ROOT\\BLBDRIVE\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionFile as Volume Driver
NameFile as Volume Driver
Win32_PnPEntity.DeviceID="USB\\ROOT_HUB\\4&244BAFA7&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_WFPLWF\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionWFP Lightweight Filter
NameWFP Lightweight Filter
ServiceWfpLwf
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_RSPNDR\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionLink-Layer Topology Discovery Responder
NameLink-Layer Topology Discovery Responder
Servicerspndr
StatusDegraded
Win32_PnPEntity.DeviceID="ACPI\\THERMALZONE\\TZ00"
PropertyValue
ConfigManagerErrorCode0
DescriptionACPI Thermal Zone
NameACPI Thermal Zone
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_NATIVEWIFIP\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionNativeWiFi Filter
NameNativeWiFi Filter
ServiceNativeWifiP
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\COMPOSITEBUS\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionComposite Bus Enumerator
NameComposite Bus Enumerator
Win32_PnPEntity.DeviceID="USB\\ROOT_HUB\\4&2A2A2FF4&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_WUDFPF\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionUser Mode Driver Frameworks Platform Driver
NameUser Mode Driver Frameworks Platform Driver
ServiceWudfPf
StatusDegraded
Win32_PnPEntity.DeviceID="ACPI\\IBM0068\\5&15D725F4&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionThinkPad PM Device
NameThinkPad PM Device
Win32_PnPEntity.DeviceID="ACPI_HAL\\PNP0C08\\0"
PropertyValue
ConfigManagerErrorCode0
DescriptionMicrosoft ACPI-Compliant System
NameMicrosoft ACPI-Compliant System
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_SECDRV\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionSecurity Driver
NameSecurity Driver
Servicesecdrv
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\COMPOSITE_BATTERY\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionMicrosoft Composite Battery
NameMicrosoft Composite Battery
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_NDIS\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionNDIS System Driver
NameNDIS System Driver
ServiceNDIS
StatusDegraded
Win32_PnPEntity.DeviceID="PCI\\VEN_10EC&DEV_8168&SUBSYS_213117AA&REV_03\\4&7377E88&0&00E5"
PropertyValue
ConfigManagerErrorCode0
DescriptionRealtek PCIe GBE Family Controller
NameRealtek PCIe GBE Family Controller
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2930&SUBSYS_20F917AA&REV_03\\3&11583659&0&FB"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionIntel(R) ICH9 Family SMBus Controller - 2930
ManufacturerIntel
NameIntel(R) ICH9 Family SMBus Controller - 2930
Status
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_X6VA005\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionX6va005
NameX6va005
ServiceX6va005
StatusDegraded
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_293C&SUBSYS_20F117AA&REV_03\\3&11583659&0&D7"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB2 Enhanced Host Controller - 293C
NameIntel(R) ICH9 Family USB2 Enhanced Host Controller - 293C
Win32_PnPEntity.DeviceID="DISPLAY\\LEN40B0\\4&377803B7&0&UID67568640"
PropertyValue
ConfigManagerErrorCode0
DescriptionThinkPad Display 1366x768
NameThinkPad Display 1366x768
Win32_PnPEntity.DeviceID="USB\\ROOT_HUB\\4&39BAF81A&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2A40&SUBSYS_213717AA&REV_07\\3&11583659&0&00"
PropertyValue
ConfigManagerErrorCode0
DescriptionMobile Intel(R) 4 Series Chipset Processor to DRAM Controller - 2A40
NameMobile Intel(R) 4 Series Chipset Processor to DRAM Controller - 2A40
Win32_PnPEntity.DeviceID="ACPI\\INT0800\\4&19087A06&0"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionIntel(R) 82802 Firmware Hub Device
ManufacturerIntel
NameIntel(R) 82802 Firmware Hub Device
Status
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_SPLDR\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionSecurity Processor Loader Driver
NameSecurity Processor Loader Driver
Servicespldr
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_FVEVOL\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionBitlocker Drive Encryption Filter Driver
NameBitlocker Drive Encryption Filter Driver
Servicefvevol
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_NDISUIO\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionNDIS Usermode I/O Protocol
NameNDIS Usermode I/O Protocol
ServiceNdisuio
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_AFD\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionAncillary Function Driver for Winsock
NameAncillary Function Driver for Winsock
ServiceAFD
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\MSSMBIOS\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionMicrosoft System Management BIOS Driver
NameMicrosoft System Management BIOS Driver
Win32_PnPEntity.DeviceID="USB\\ROOT_HUB\\4&7B13611&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Win32_PnPEntity.DeviceID="ACPI\\LEN0017\\4&19087A06&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionPS/2 Compatible Mouse
NamePS/2 Compatible Mouse
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_GGSAFERDRIVER\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionGGSAFER Driver
NameGGSAFER Driver
ServiceGGSAFERDriver
StatusDegraded
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_NDPROXY\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionNDProxy
NameNDProxy
ServiceNDProxy
StatusDegraded
Win32_PnPEntity.DeviceID="DTSOFTBUS&REV1\\DTCDROM&REV1\\1&79F5D87&0&00"
PropertyValue
ConfigManagerErrorCode0
DescriptionCD-ROM Drive
NameDTSoftBusCd00
Win32_PnPEntity.DeviceID="ROOT\\MS_AGILEVPNMINIPORT\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionWAN Miniport (IKEv2)
NameWAN Miniport (IKEv2)
Win32_PnPEntity.DeviceID="USB\\ROOT_HUB\\4&B460F2&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Win32_PnPEntity.DeviceID="ACPI\\PNP0000\\4&19087A06&0"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionProgrammable interrupt controller
Manufacturer(Standard system devices)
NameProgrammable interrupt controller
Status
Win32_PnPEntity.DeviceID="PCI\\VEN_197B&DEV_2381&SUBSYS_212D17AA&REV_00\\4&398A18D&0&02E0"
PropertyValue
ConfigManagerErrorCode0
DescriptionJMB38X SD Host Controller
NameJMB38X SD Host Controller
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2934&SUBSYS_20F017AA&REV_03\\3&11583659&0&E8"
PropertyValue
ConfigManagerErrorCode0
DescriptionIntel(R) ICH9 Family USB Universal Host Controller - 2934
NameIntel(R) ICH9 Family USB Universal Host Controller - 2934
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_293E&SUBSYS_20F217AA&REV_03\\3&11583659&0&D8"
PropertyValue
ConfigManagerErrorCode0
DescriptionHigh Definition Audio Controller
NameHigh Definition Audio Controller
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_HTTP\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionHTTP
NameHTTP
ServiceHTTP
StatusDegraded
Win32_PnPEntity.DeviceID="PCI\\VEN_8086&DEV_2A42&SUBSYS_213A17AA&REV_07\\3&11583659&0&10"
PropertyValue
ConfigManagerErrorCode0
DescriptionMobile Intel(R) 4 Series Express Chipset Family
NameMobile Intel(R) 4 Series Express Chipset Family
Win32_PnPEntity.DeviceID="ROOT\\MS_L2TPMINIPORT\\0000"
PropertyValue
ConfigManagerErrorCode0
DescriptionWAN Miniport (L2TP)
NameWAN Miniport (L2TP)
Win32_PnPEntity.DeviceID="USB\\ROOT_HUB20\\4&2A372ADE&0"
PropertyValue
ConfigManagerErrorCode0
DescriptionUSB Root Hub
NameUSB Root Hub
Win32_PnPEntity.DeviceID="ACPI\\PNP0100\\4&19087A06&0"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionSystem timer
Manufacturer(Standard system devices)
NameSystem timer
Status
Win32_PnPEntity.DeviceID="ROOT\\LEGACY_HWPOLICY\\0000"
PropertyValue
ConfigManagerErrorCode0
ConfigManagerUserConfig0
DescriptionHardware Policy Driver
NameHardware Policy Driver
Servicehwpolicy
StatusDegraded
Interactive Session ProcessesTop: of  1 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_SessionProcess0x0
Returned Objects
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"999\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"2660\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="999"
Dependent\\.\root\cimv2:Win32_Process.Handle="2660"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"1752\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="1752"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"1820\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="1820"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"1860\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="1860"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"1148\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="1148"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"1424\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="1424"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"1468\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="1468"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"1444\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="1444"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"1440\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="1440"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"1168\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="1168"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"2144\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="2144"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"2160\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="2160"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"2180\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="2180"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"2228\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="2228"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"3120\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="3120"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"3148\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="3148"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"3176\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="3176"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"3848\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="3848"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"3296\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="3296"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"2840\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="2840"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"1160\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="1160"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"684\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="684"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"1140\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="1140"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"3220\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="3220"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"2780\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="2780"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"2020\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="2020"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"2556\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="2556"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"3600\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Dependent\\.\root\cimv2:Win32_Process.Handle="3600"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"1787154\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"1096\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="1787154"
Dependent\\.\root\cimv2:Win32_Process.Handle="1096"
Win32_SessionProcess.Antecedent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"1787154\"",Dependent="\\\\.\\root\\cimv2:Win32_Process.Handle=\"3564\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_LogonSession.LogonId="1787154"
Dependent\\.\root\cimv2:Win32_Process.Handle="3564"
Interactive SessionsTop: of  1 
QueryQuery Result
root\cimv2:SELECT LogonId FROM Win32_LogonSession WHERE LogonType = 20x0
Returned Objects
Win32_LogonSession.LogonId="129795"
PropertyValue
LogonId129795
ProcessesTop: of  1 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_Process0x0
Returned Objects
Win32_Process.Handle="0"
PropertyValue
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionSystem Idle Process
Handle0
HandleCount0
KernelModeTime11757795370
NameSystem Idle Process
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount0
OtherTransferCount0
PageFaults1
PageFileUsage0
ParentProcessId0
PeakPageFileUsage0
PeakVirtualSize0
PeakWorkingSetSize24
Priority0
PrivatePageCount0
ProcessId0
QuotaNonPagedPoolUsage0
QuotaPagedPoolUsage0
QuotaPeakNonPagedPoolUsage0
QuotaPeakPagedPoolUsage0
ReadOperationCount0
ReadTransferCount0
SessionId0
ThreadCount2
UserModeTime0
VirtualSize0
WindowsVersion6.1.7601
WorkingSetSize24576
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="4"
PropertyValue
CreationDate20110420131149.385622-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionSystem
Handle4
HandleCount600
KernelModeTime180649158
NameSystem
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount13078
OtherTransferCount708628
PageFaults38962
PageFileUsage160
ParentProcessId0
PeakPageFileUsage10568
PeakVirtualSize16773120
PeakWorkingSetSize13120
Priority8
PrivatePageCount163840
ProcessId4
QuotaNonPagedPoolUsage0
QuotaPagedPoolUsage0
QuotaPeakNonPagedPoolUsage0
QuotaPeakPagedPoolUsage0
ReadOperationCount325
ReadTransferCount59034234
SessionId0
ThreadCount101
UserModeTime0
VirtualSize6148096
WindowsVersion6.1.7601
WorkingSetSize2801664
WriteOperationCount2203
WriteTransferCount35315621
Win32_Process.Handle="272"
PropertyValue
CommandLine\SystemRoot\System32\smss.exe
CreationDate20110420131149.385622-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionsmss.exe
Handle272
HandleCount30
KernelModeTime780005
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namesmss.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount573
OtherTransferCount10717
PageFaults531
PageFileUsage420
ParentProcessId4
PeakPageFileUsage496
PeakVirtualSize19357696
PeakWorkingSetSize1124
Priority11
PrivatePageCount430080
ProcessId272
QuotaNonPagedPoolUsage2
QuotaPagedPoolUsage11
QuotaPeakNonPagedPoolUsage7
QuotaPeakPagedPoolUsage38
ReadOperationCount12
ReadTransferCount33310
SessionId0
ThreadCount2
UserModeTime0
VirtualSize5169152
WindowsVersion6.1.7601
WorkingSetSize1105920
WriteOperationCount5
WriteTransferCount20
Win32_Process.Handle="412"
PropertyValue
CommandLine%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
CreationDate20110420131210.710860-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptioncsrss.exe
ExecutablePathC:\Windows\system32\csrss.exe
Handle412
HandleCount649
KernelModeTime8736056
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namecsrss.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount2083
OtherTransferCount38092
PageFaults1201
PageFileUsage1948
ParentProcessId360
PeakPageFileUsage1948
PeakVirtualSize49430528
PeakWorkingSetSize3940
Priority13
PrivatePageCount1994752
ProcessId412
QuotaNonPagedPoolUsage12
QuotaPagedPoolUsage135
QuotaPeakNonPagedPoolUsage12
QuotaPeakPagedPoolUsage136
ReadOperationCount230
ReadTransferCount168784
SessionId0
ThreadCount9
UserModeTime2028013
VirtualSize49360896
WindowsVersion6.1.7601
WorkingSetSize4022272
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="464"
PropertyValue
CommandLinewininit.exe
CreationDate20110420131211.490861-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionwininit.exe
ExecutablePathC:\Windows\system32\wininit.exe
Handle464
HandleCount80
KernelModeTime1092007
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namewininit.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount769
OtherTransferCount4526
PageFaults1330
PageFileUsage1476
ParentProcessId360
PeakPageFileUsage1784
PeakVirtualSize55107584
PeakWorkingSetSize4412
Priority13
PrivatePageCount1511424
ProcessId464
QuotaNonPagedPoolUsage10
QuotaPagedPoolUsage101
QuotaPeakNonPagedPoolUsage12
QuotaPeakPagedPoolUsage105
ReadOperationCount1
ReadTransferCount7168
SessionId0
ThreadCount3
UserModeTime0
VirtualSize49815552
WindowsVersion6.1.7601
WorkingSetSize4440064
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="480"
PropertyValue
CommandLine%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
CreationDate20110420131211.490861-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptioncsrss.exe
ExecutablePathC:\Windows\system32\csrss.exe
Handle480
HandleCount433
KernelModeTime28080180
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namecsrss.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount6520
OtherTransferCount48423
PageFaults36989
PageFileUsage2380
ParentProcessId456
PeakPageFileUsage12248
PeakVirtualSize268238848
PeakWorkingSetSize15628
Priority13
PrivatePageCount2437120
ProcessId480
QuotaNonPagedPoolUsage18
QuotaPagedPoolUsage177
QuotaPeakNonPagedPoolUsage22
QuotaPeakPagedPoolUsage544
ReadOperationCount32048
ReadTransferCount1338006
SessionId1
ThreadCount10
UserModeTime2496016
VirtualSize71606272
WindowsVersion6.1.7601
WorkingSetSize10383360
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="512"
PropertyValue
CommandLineC:\Windows\system32\services.exe
CreationDate20110420131211.615661-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionservices.exe
ExecutablePathC:\Windows\system32\services.exe
Handle512
HandleCount226
KernelModeTime10452067
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Nameservices.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount2986
OtherTransferCount371084
PageFaults4429
PageFileUsage5384
ParentProcessId464
PeakPageFileUsage11296
PeakVirtualSize61825024
PeakWorkingSetSize14668
Priority9
PrivatePageCount5513216
ProcessId512
QuotaNonPagedPoolUsage14
QuotaPagedPoolUsage66
QuotaPeakNonPagedPoolUsage24
QuotaPeakPagedPoolUsage74
ReadOperationCount109
ReadTransferCount507012
SessionId0
ThreadCount8
UserModeTime2028013
VirtualSize43917312
WindowsVersion6.1.7601
WorkingSetSize9392128
WriteOperationCount18
WriteTransferCount452
Win32_Process.Handle="564"
PropertyValue
CommandLinewinlogon.exe
CreationDate20110420131212.504863-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionwinlogon.exe
ExecutablePathC:\Windows\system32\winlogon.exe
Handle564
HandleCount109
KernelModeTime2184014
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namewinlogon.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount1565
OtherTransferCount7268
PageFaults3443
PageFileUsage2884
ParentProcessId456
PeakPageFileUsage3808
PeakVirtualSize61112320
PeakWorkingSetSize8172
Priority13
PrivatePageCount2953216
ProcessId564
QuotaNonPagedPoolUsage9
QuotaPagedPoolUsage107
QuotaPeakNonPagedPoolUsage12
QuotaPeakPagedPoolUsage113
ReadOperationCount4
ReadTransferCount7428
SessionId1
ThreadCount3
UserModeTime936006
VirtualSize58171392
WindowsVersion6.1.7601
WorkingSetSize6967296
WriteOperationCount1
WriteTransferCount160
Win32_Process.Handle="572"
PropertyValue
CommandLineC:\Windows\system32\lsass.exe
CreationDate20110420131212.504863-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionlsass.exe
ExecutablePathC:\Windows\system32\lsass.exe
Handle572
HandleCount771
KernelModeTime7956051
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namelsass.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount4171
OtherTransferCount589178
PageFaults3256
PageFileUsage4504
ParentProcessId464
PeakPageFileUsage4508
PeakVirtualSize47345664
PeakWorkingSetSize11180
Priority9
PrivatePageCount4612096
ProcessId572
QuotaNonPagedPoolUsage27
QuotaPagedPoolUsage104
QuotaPeakNonPagedPoolUsage30
QuotaPeakPagedPoolUsage104
ReadOperationCount1450
ReadTransferCount100942
SessionId0
ThreadCount11
UserModeTime7644049
VirtualSize47345664
WindowsVersion6.1.7601
WorkingSetSize11448320
WriteOperationCount1513
WriteTransferCount633793
Win32_Process.Handle="580"
PropertyValue
CommandLineC:\Windows\system32\lsm.exe
CreationDate20110420131212.504863-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionlsm.exe
ExecutablePathC:\Windows\system32\lsm.exe
Handle580
HandleCount154
KernelModeTime0
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namelsm.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount88
OtherTransferCount608
PageFaults1077
PageFileUsage2384
ParentProcessId464
PeakPageFileUsage2492
PeakVirtualSize23396352
PeakWorkingSetSize4140
Priority8
PrivatePageCount2441216
ProcessId580
QuotaNonPagedPoolUsage8
QuotaPagedPoolUsage38
QuotaPeakNonPagedPoolUsage9
QuotaPeakPagedPoolUsage38
ReadOperationCount0
ReadTransferCount0
SessionId0
ThreadCount10
UserModeTime156001
VirtualSize22872064
WindowsVersion6.1.7601
WorkingSetSize4202496
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="692"
PropertyValue
CommandLineC:\Windows\system32\svchost.exe -k DcomLaunch
CreationDate20110420131214.766867-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionsvchost.exe
ExecutablePathC:\Windows\system32\svchost.exe
Handle692
HandleCount377
KernelModeTime12636081
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namesvchost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount5247
OtherTransferCount68878
PageFaults10430
PageFileUsage4168
ParentProcessId512
PeakPageFileUsage4312
PeakVirtualSize59580416
PeakWorkingSetSize9528
Priority8
PrivatePageCount4268032
ProcessId692
QuotaNonPagedPoolUsage15
QuotaPagedPoolUsage105
QuotaPeakNonPagedPoolUsage17
QuotaPeakPagedPoolUsage107
ReadOperationCount0
ReadTransferCount0
SessionId0
ThreadCount13
UserModeTime4056026
VirtualSize57495552
WindowsVersion6.1.7601
WorkingSetSize9330688
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="756"
PropertyValue
CommandLineC:\Windows\system32\ibmpmsvc.exe
CreationDate20110420131215.422068-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionibmpmsvc.exe
ExecutablePathC:\Windows\system32\ibmpmsvc.exe
Handle756
HandleCount50
KernelModeTime0
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Nameibmpmsvc.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount50
OtherTransferCount248
PageFaults695
PageFileUsage1040
ParentProcessId512
PeakPageFileUsage1100
PeakVirtualSize43196416
PeakWorkingSetSize2712
Priority8
PrivatePageCount1064960
ProcessId756
QuotaNonPagedPoolUsage6
QuotaPagedPoolUsage79
QuotaPeakNonPagedPoolUsage7
QuotaPeakPagedPoolUsage79
ReadOperationCount0
ReadTransferCount0
SessionId0
ThreadCount6
UserModeTime0
VirtualSize42147840
WindowsVersion6.1.7601
WorkingSetSize2740224
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="796"
PropertyValue
CommandLineC:\Windows\system32\svchost.exe -k RPCSS
CreationDate20110420131215.562468-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionsvchost.exe
ExecutablePathC:\Windows\system32\svchost.exe
Handle796
HandleCount350
KernelModeTime2028013
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namesvchost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount675
OtherTransferCount17474
PageFaults2717
PageFileUsage5012
ParentProcessId512
PeakPageFileUsage5012
PeakVirtualSize49397760
PeakWorkingSetSize8032
Priority8
PrivatePageCount5132288
ProcessId796
QuotaNonPagedPoolUsage20
QuotaPagedPoolUsage86
QuotaPeakNonPagedPoolUsage20
QuotaPeakPagedPoolUsage86
ReadOperationCount0
ReadTransferCount0
SessionId0
ThreadCount28
UserModeTime1248008
VirtualSize49397760
WindowsVersion6.1.7601
WorkingSetSize8224768
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="904"
PropertyValue
CommandLineC:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
CreationDate20110420131215.780869-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionsvchost.exe
ExecutablePathC:\Windows\System32\svchost.exe
Handle904
HandleCount584
KernelModeTime8580055
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namesvchost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount6298
OtherTransferCount69656
PageFaults7303
PageFileUsage18796
ParentProcessId512
PeakPageFileUsage20136
PeakVirtualSize125304832
PeakWorkingSetSize23372
Priority8
PrivatePageCount19247104
ProcessId904
QuotaNonPagedPoolUsage28
QuotaPagedPoolUsage179
QuotaPeakNonPagedPoolUsage30
QuotaPeakPagedPoolUsage182
ReadOperationCount772
ReadTransferCount39345413
SessionId0
ThreadCount22
UserModeTime8424054
VirtualSize122683392
WindowsVersion6.1.7601
WorkingSetSize22777856
WriteOperationCount107
WriteTransferCount933513
Win32_Process.Handle="936"
PropertyValue
CommandLineC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
CreationDate20110420131216.545270-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionsvchost.exe
ExecutablePathC:\Windows\System32\svchost.exe
Handle936
HandleCount603
KernelModeTime10920070
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namesvchost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount20543
OtherTransferCount4295963224
PageFaults36677
PageFileUsage50020
ParentProcessId512
PeakPageFileUsage78408
PeakVirtualSize215535616
PeakWorkingSetSize77368
Priority8
PrivatePageCount51220480
ProcessId936
QuotaNonPagedPoolUsage33
QuotaPagedPoolUsage185
QuotaPeakNonPagedPoolUsage36
QuotaPeakPagedPoolUsage243
ReadOperationCount734
ReadTransferCount35341031
SessionId0
ThreadCount25
UserModeTime53664344
VirtualSize184975360
WindowsVersion6.1.7601
WorkingSetSize61743104
WriteOperationCount294
WriteTransferCount5884493
Win32_Process.Handle="964"
PropertyValue
CommandLineC:\Windows\system32\svchost.exe -k netsvcs
CreationDate20110420131216.545270-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionsvchost.exe
ExecutablePathC:\Windows\system32\svchost.exe
Handle964
HandleCount1634
KernelModeTime10140065
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namesvchost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount15209
OtherTransferCount3691925
PageFaults44891
PageFileUsage26996
ParentProcessId512
PeakPageFileUsage30884
PeakVirtualSize747413504
PeakWorkingSetSize41652
Priority8
PrivatePageCount27643904
ProcessId964
QuotaNonPagedPoolUsage71
QuotaPagedPoolUsage320
QuotaPeakNonPagedPoolUsage124
QuotaPeakPagedPoolUsage320
ReadOperationCount3525
ReadTransferCount29736413
SessionId0
ThreadCount108
UserModeTime20592132
VirtualSize486301696
WindowsVersion6.1.7601
WorkingSetSize41807872
WriteOperationCount1399
WriteTransferCount5454001
Win32_Process.Handle="308"
PropertyValue
CommandLineC:\Windows\system32\svchost.exe -k LocalService
CreationDate20110420131216.919671-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionsvchost.exe
ExecutablePathC:\Windows\system32\svchost.exe
Handle308
HandleCount455
KernelModeTime1404009
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namesvchost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount3031
OtherTransferCount124164
PageFaults4224
PageFileUsage8472
ParentProcessId512
PeakPageFileUsage9420
PeakVirtualSize80224256
PeakWorkingSetSize15676
Priority8
PrivatePageCount8675328
ProcessId308
QuotaNonPagedPoolUsage31
QuotaPagedPoolUsage118
QuotaPeakNonPagedPoolUsage36
QuotaPeakPagedPoolUsage123
ReadOperationCount33
ReadTransferCount674
SessionId0
ThreadCount17
UserModeTime1248008
VirtualSize70176768
WindowsVersion6.1.7601
WorkingSetSize15716352
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="880"
PropertyValue
CommandLineC:\Windows\system32\svchost.exe -k NetworkService
CreationDate20110420131219.400075-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionsvchost.exe
ExecutablePathC:\Windows\system32\svchost.exe
Handle880
HandleCount386
KernelModeTime8736056
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namesvchost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount20834
OtherTransferCount873835
PageFaults8841
PageFileUsage11292
ParentProcessId512
PeakPageFileUsage12196
PeakVirtualSize95518720
PeakWorkingSetSize14916
Priority8
PrivatePageCount11563008
ProcessId880
QuotaNonPagedPoolUsage29
QuotaPagedPoolUsage119
QuotaPeakNonPagedPoolUsage36
QuotaPeakPagedPoolUsage119
ReadOperationCount534
ReadTransferCount1754860
SessionId0
ThreadCount15
UserModeTime1404009
VirtualSize91062272
WindowsVersion6.1.7601
WorkingSetSize14942208
WriteOperationCount95
WriteTransferCount125120
Win32_Process.Handle="1248"
PropertyValue
CommandLineC:\Windows\System32\spoolsv.exe
CreationDate20110420131223.147282-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionspoolsv.exe
ExecutablePathC:\Windows\System32\spoolsv.exe
Handle1248
HandleCount277
KernelModeTime780005
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namespoolsv.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount1008
OtherTransferCount10278
PageFaults3235
PageFileUsage6440
ParentProcessId512
PeakPageFileUsage6652
PeakVirtualSize85143552
PeakWorkingSetSize11460
Priority8
PrivatePageCount6594560
ProcessId1248
QuotaNonPagedPoolUsage20
QuotaPagedPoolUsage145
QuotaPeakNonPagedPoolUsage21
QuotaPeakPagedPoolUsage147
ReadOperationCount3
ReadTransferCount1157
SessionId0
ThreadCount13
UserModeTime468003
VirtualSize84213760
WindowsVersion6.1.7601
WorkingSetSize11587584
WriteOperationCount1
WriteTransferCount160
Win32_Process.Handle="1280"
PropertyValue
CommandLineC:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
CreationDate20110420131224.967285-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionsvchost.exe
ExecutablePathC:\Windows\system32\svchost.exe
Handle1280
HandleCount341
KernelModeTime5460035
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namesvchost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount6894
OtherTransferCount425088
PageFaults26952
PageFileUsage20972
ParentProcessId512
PeakPageFileUsage46532
PeakVirtualSize109830144
PeakWorkingSetSize45796
Priority8
PrivatePageCount21475328
ProcessId1280
QuotaNonPagedPoolUsage35
QuotaPagedPoolUsage102
QuotaPeakNonPagedPoolUsage40
QuotaPeakPagedPoolUsage104
ReadOperationCount1564
ReadTransferCount59009464
SessionId0
ThreadCount20
UserModeTime14820095
VirtualSize91271168
WindowsVersion6.1.7601
WorkingSetSize25382912
WriteOperationCount9
WriteTransferCount361200
Win32_Process.Handle="1376"
PropertyValue
CommandLineC:\Windows\SysWOW64\svchost.exe -k Akamai
CreationDate20110420131225.473286-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionsvchost.exe
ExecutablePathC:\Windows\SysWOW64\svchost.exe
Handle1376
HandleCount242
KernelModeTime56940365
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namesvchost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount80719
OtherTransferCount683764
PageFaults82153
PageFileUsage6092
ParentProcessId512
PeakPageFileUsage6504
PeakVirtualSize105881600
PeakWorkingSetSize12620
Priority8
PrivatePageCount6238208
ProcessId1376
QuotaNonPagedPoolUsage26
QuotaPagedPoolUsage173
QuotaPeakNonPagedPoolUsage33
QuotaPeakPagedPoolUsage186
ReadOperationCount372
ReadTransferCount3573969
SessionId0
ThreadCount11
UserModeTime21528138
VirtualSize98779136
WindowsVersion6.1.7601
WorkingSetSize12640256
WriteOperationCount23
WriteTransferCount36703
Win32_Process.Handle="1500"
PropertyValue
CommandLine"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
CreationDate20110420131229.147294-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionAppleMobileDeviceService.exe
ExecutablePathC:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
Handle1500
HandleCount153
KernelModeTime468003
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
NameAppleMobileDeviceService.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount485
OtherTransferCount4102
PageFaults1998
PageFileUsage2108
ParentProcessId512
PeakPageFileUsage2220
PeakVirtualSize77737984
PeakWorkingSetSize7276
Priority8
PrivatePageCount2158592
ProcessId1500
QuotaNonPagedPoolUsage15
QuotaPagedPoolUsage130
QuotaPeakNonPagedPoolUsage16
QuotaPeakPagedPoolUsage131
ReadOperationCount1
ReadTransferCount906
SessionId0
ThreadCount5
UserModeTime0
VirtualSize75116544
WindowsVersion6.1.7601
WorkingSetSize7385088
WriteOperationCount39
WriteTransferCount4596
Win32_Process.Handle="1540"
PropertyValue
CommandLine"C:\Program Files (x86)\Bonjour\mDNSResponder.exe"
CreationDate20110420131229.864895-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionmDNSResponder.exe
ExecutablePathC:\Program Files (x86)\Bonjour\mDNSResponder.exe
Handle1540
HandleCount117
KernelModeTime1872012
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
NamemDNSResponder.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount6767
OtherTransferCount262542
PageFaults1559
PageFileUsage1760
ParentProcessId512
PeakPageFileUsage1904
PeakVirtualSize58892288
PeakWorkingSetSize5584
Priority8
PrivatePageCount1802240
ProcessId1540
QuotaNonPagedPoolUsage15
QuotaPagedPoolUsage94
QuotaPeakNonPagedPoolUsage17
QuotaPeakPagedPoolUsage95
ReadOperationCount2
ReadTransferCount144
SessionId0
ThreadCount4
UserModeTime468003
VirtualSize54960128
WindowsVersion6.1.7601
WorkingSetSize5619712
WriteOperationCount1
WriteTransferCount116
Win32_Process.Handle="1592"
PropertyValue
CommandLine"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
CreationDate20110420131230.098895-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionekrn.exe
ExecutablePathC:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
Handle1592
HandleCount269
KernelModeTime382358451
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Nameekrn.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount526415
OtherTransferCount3536072
PageFaults118282
PageFileUsage66092
ParentProcessId512
PeakPageFileUsage76980
PeakVirtualSize173891584
PeakWorkingSetSize77732
Priority8
PrivatePageCount67678208
ProcessId1592
QuotaNonPagedPoolUsage25
QuotaPagedPoolUsage125
QuotaPeakNonPagedPoolUsage28
QuotaPeakPagedPoolUsage126
ReadOperationCount157033
ReadTransferCount573920814
SessionId0
ThreadCount25
UserModeTime666124270
VirtualSize164356096
WindowsVersion6.1.7601
WorkingSetSize68354048
WriteOperationCount38106
WriteTransferCount1028413852
Win32_Process.Handle="1612"
PropertyValue
CommandLineC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
CreationDate20110420131230.816497-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionsvchost.exe
ExecutablePathC:\Windows\system32\svchost.exe
Handle1612
HandleCount265
KernelModeTime1404009
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namesvchost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount5996
OtherTransferCount239592
PageFaults3859
PageFileUsage5688
ParentProcessId512
PeakPageFileUsage5732
PeakVirtualSize64483328
PeakWorkingSetSize13360
Priority8
PrivatePageCount5824512
ProcessId1612
QuotaNonPagedPoolUsage26
QuotaPagedPoolUsage103
QuotaPeakNonPagedPoolUsage28
QuotaPeakPagedPoolUsage103
ReadOperationCount9
ReadTransferCount3596232
SessionId0
ThreadCount19
UserModeTime1248008
VirtualSize64483328
WindowsVersion6.1.7601
WorkingSetSize13676544
WriteOperationCount1
WriteTransferCount160
Win32_Process.Handle="1644"
PropertyValue
CommandLineC:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
CreationDate20110420131230.863297-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionPresentationFontCache.exe
ExecutablePathC:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
Handle1644
HandleCount147
KernelModeTime936006
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
NamePresentationFontCache.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount516
OtherTransferCount3708
PageFaults4764
PageFileUsage26676
ParentProcessId512
PeakPageFileUsage28756
PeakVirtualSize533385216
PeakWorkingSetSize18276
Priority8
PrivatePageCount27316224
ProcessId1644
QuotaNonPagedPoolUsage25
QuotaPagedPoolUsage208
QuotaPeakNonPagedPoolUsage27
QuotaPeakPagedPoolUsage209
ReadOperationCount19
ReadTransferCount1361097
SessionId0
ThreadCount6
UserModeTime468003
VirtualSize530239488
WindowsVersion6.1.7601
WorkingSetSize18653184
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="1752"
PropertyValue
CommandLine"taskhost.exe"
CreationDate20110420131231.112897-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptiontaskhost.exe
ExecutablePathC:\Windows\system32\taskhost.exe
Handle1752
HandleCount150
KernelModeTime312002
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Nametaskhost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount461
OtherTransferCount1052
PageFaults2506
PageFileUsage3136
ParentProcessId512
PeakPageFileUsage3472
PeakVirtualSize74784768
PeakWorkingSetSize7568
Priority8
PrivatePageCount3211264
ProcessId1752
QuotaNonPagedPoolUsage15
QuotaPagedPoolUsage131
QuotaPeakNonPagedPoolUsage17
QuotaPeakPagedPoolUsage142
ReadOperationCount3
ReadTransferCount312
SessionId1
ThreadCount7
UserModeTime156001
VirtualSize68173824
WindowsVersion6.1.7601
WorkingSetSize7442432
WriteOperationCount2
WriteTransferCount188
Win32_Process.Handle="1820"
PropertyValue
CommandLine"C:\Windows\system32\Dwm.exe"
CreationDate20110420131231.222097-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptiondwm.exe
ExecutablePathC:\Windows\system32\Dwm.exe
Handle1820
HandleCount114
KernelModeTime16848108
MaximumWorkingSetSize2097152
MinimumWorkingSetSize51200
Namedwm.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount201
OtherTransferCount512
PageFaults45796
PageFileUsage51504
ParentProcessId936
PeakPageFileUsage60308
PeakVirtualSize156131328
PeakWorkingSetSize30960
Priority13
PrivatePageCount52740096
ProcessId1820
QuotaNonPagedPoolUsage15
QuotaPagedPoolUsage200
QuotaPeakNonPagedPoolUsage15
QuotaPeakPagedPoolUsage200
ReadOperationCount1
ReadTransferCount60
SessionId1
ThreadCount5
UserModeTime34320220
VirtualSize149762048
WindowsVersion6.1.7601
WorkingSetSize27144192
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="1860"
PropertyValue
CommandLineC:\Windows\Explorer.EXE
CreationDate20110420131231.549698-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionexplorer.exe
ExecutablePathC:\Windows\Explorer.EXE
Handle1860
HandleCount758
KernelModeTime40092257
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Nameexplorer.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount31263
OtherTransferCount1119285
PageFaults33498
PageFileUsage33384
ParentProcessId1812
PeakPageFileUsage62788
PeakVirtualSize332206080
PeakWorkingSetSize56440
Priority8
PrivatePageCount34185216
ProcessId1860
QuotaNonPagedPoolUsage70
QuotaPagedPoolUsage407
QuotaPeakNonPagedPoolUsage91
QuotaPeakPagedPoolUsage601
ReadOperationCount1217
ReadTransferCount3889062
SessionId1
ThreadCount28
UserModeTime25116161
VirtualSize248782848
WindowsVersion6.1.7601
WorkingSetSize56172544
WriteOperationCount16
WriteTransferCount526696
Win32_Process.Handle="1148"
PropertyValue
CommandLine"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
CreationDate20110420131236.775707-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionegui.exe
ExecutablePathC:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
Handle1148
HandleCount126
KernelModeTime1248008
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Nameegui.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount1219
OtherTransferCount24020
PageFaults3039
PageFileUsage3180
ParentProcessId1860
PeakPageFileUsage3280
PeakVirtualSize102281216
PeakWorkingSetSize10720
Priority8
PrivatePageCount3256320
ProcessId1148
QuotaNonPagedPoolUsage13
QuotaPagedPoolUsage174
QuotaPeakNonPagedPoolUsage14
QuotaPeakPagedPoolUsage184
ReadOperationCount1445
ReadTransferCount5931870
SessionId1
ThreadCount6
UserModeTime2028013
VirtualSize97034240
WindowsVersion6.1.7601
WorkingSetSize10915840
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="1424"
PropertyValue
CommandLine"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
CreationDate20110420131237.337308-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionRAVCpl64.exe
ExecutablePathC:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
Handle1424
HandleCount235
KernelModeTime1248008
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
NameRAVCpl64.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount1968
OtherTransferCount77094
PageFaults3036
PageFileUsage8840
ParentProcessId1860
PeakPageFileUsage9500
PeakVirtualSize116535296
PeakWorkingSetSize11000
Priority8
PrivatePageCount9052160
ProcessId1424
QuotaNonPagedPoolUsage14
QuotaPagedPoolUsage181
QuotaPeakNonPagedPoolUsage16
QuotaPeakPagedPoolUsage186
ReadOperationCount0
ReadTransferCount0
SessionId1
ThreadCount11
UserModeTime312002
VirtualSize109375488
WindowsVersion6.1.7601
WorkingSetSize10629120
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="1468"
PropertyValue
CommandLine"C:\Windows\System32\igfxtray.exe"
CreationDate20110420131237.415308-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionigfxtray.exe
ExecutablePathC:\Windows\System32\igfxtray.exe
Handle1468
HandleCount77
KernelModeTime0
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Nameigfxtray.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount223
OtherTransferCount1238
PageFaults1730
PageFileUsage2284
ParentProcessId1860
PeakPageFileUsage2956
PeakVirtualSize73641984
PeakWorkingSetSize6276
Priority8
PrivatePageCount2338816
ProcessId1468
QuotaNonPagedPoolUsage9
QuotaPagedPoolUsage121
QuotaPeakNonPagedPoolUsage11
QuotaPeakPagedPoolUsage123
ReadOperationCount0
ReadTransferCount0
SessionId1
ThreadCount3
UserModeTime156001
VirtualSize69447680
WindowsVersion6.1.7601
WorkingSetSize6389760
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="1444"
PropertyValue
CommandLine"C:\Windows\System32\hkcmd.exe"
CreationDate20110420131237.789709-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionhkcmd.exe
ExecutablePathC:\Windows\System32\hkcmd.exe
Handle1444
HandleCount154
KernelModeTime312002
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namehkcmd.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount952
OtherTransferCount352182
PageFaults2699
PageFileUsage2940
ParentProcessId1860
PeakPageFileUsage3072
PeakVirtualSize107450368
PeakWorkingSetSize9828
Priority8
PrivatePageCount3010560
ProcessId1444
QuotaNonPagedPoolUsage13
QuotaPagedPoolUsage181
QuotaPeakNonPagedPoolUsage14
QuotaPeakPagedPoolUsage187
ReadOperationCount12
ReadTransferCount117017
SessionId1
ThreadCount3
UserModeTime312002
VirtualSize99270656
WindowsVersion6.1.7601
WorkingSetSize9957376
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="1440"
PropertyValue
CommandLine"C:\Windows\System32\igfxpers.exe"
CreationDate20110420131237.898909-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionigfxpers.exe
ExecutablePathC:\Windows\System32\igfxpers.exe
Handle1440
HandleCount90
KernelModeTime624004
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Nameigfxpers.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount174
OtherTransferCount496
PageFaults1779
PageFileUsage2100
ParentProcessId1860
PeakPageFileUsage2212
PeakVirtualSize81092608
PeakWorkingSetSize6496
Priority8
PrivatePageCount2150400
ProcessId1440
QuotaNonPagedPoolUsage9
QuotaPagedPoolUsage141
QuotaPeakNonPagedPoolUsage11
QuotaPeakPagedPoolUsage142
ReadOperationCount0
ReadTransferCount0
SessionId1
ThreadCount3
UserModeTime312002
VirtualSize76898304
WindowsVersion6.1.7601
WorkingSetSize6610944
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="1168"
PropertyValue
CommandLine"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
CreationDate20110420131238.304510-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionDTLite.exe
ExecutablePathC:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
Handle1168
HandleCount157
KernelModeTime780005
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
NameDTLite.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount1387
OtherTransferCount87776
PageFaults3119
PageFileUsage3092
ParentProcessId1860
PeakPageFileUsage3372
PeakVirtualSize99700736
PeakWorkingSetSize10304
Priority8
PrivatePageCount3166208
ProcessId1168
QuotaNonPagedPoolUsage14
QuotaPagedPoolUsage167
QuotaPeakNonPagedPoolUsage16
QuotaPeakPagedPoolUsage167
ReadOperationCount54
ReadTransferCount2384
SessionId1
ThreadCount7
UserModeTime8112052
VirtualSize94502912
WindowsVersion6.1.7601
WorkingSetSize10350592
WriteOperationCount24
WriteTransferCount1136
Win32_Process.Handle="2144"
PropertyValue
CommandLine"C:\Windows\System32\rundll32.exe" C:\PROGRA~2\ThinkPad\UTILIT~1\PWMTR64V.DLL,PwrMgrBkGndMonitor
CreationDate20110420131244.524921-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionrundll32.exe
ExecutablePathC:\Windows\SysWOW64\rundll32.exe
Handle2144
HandleCount51
KernelModeTime312002
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namerundll32.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount186
OtherTransferCount1102
PageFaults1054
PageFileUsage1160
ParentProcessId1924
PeakPageFileUsage1256
PeakVirtualSize64155648
PeakWorkingSetSize3780
Priority8
PrivatePageCount1187840
ProcessId2144
QuotaNonPagedPoolUsage8
QuotaPagedPoolUsage118
QuotaPeakNonPagedPoolUsage10
QuotaPeakPagedPoolUsage121
ReadOperationCount2
ReadTransferCount312
SessionId1
ThreadCount1
UserModeTime0
VirtualSize62615552
WindowsVersion6.1.7601
WorkingSetSize3837952
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="2160"
PropertyValue
CommandLine"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
CreationDate20110420131244.806521-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionjusched.exe
ExecutablePathC:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
Handle2160
HandleCount50
KernelModeTime312002
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namejusched.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount119
OtherTransferCount590
PageFaults1113
PageFileUsage1104
ParentProcessId1924
PeakPageFileUsage1144
PeakVirtualSize69537792
PeakWorkingSetSize4224
Priority8
PrivatePageCount1130496
ProcessId2160
QuotaNonPagedPoolUsage8
QuotaPagedPoolUsage130
QuotaPeakNonPagedPoolUsage9
QuotaPeakPagedPoolUsage130
ReadOperationCount0
ReadTransferCount0
SessionId1
ThreadCount1
UserModeTime0
VirtualSize69533696
WindowsVersion6.1.7601
WorkingSetSize4251648
WriteOperationCount4
WriteTransferCount401
Win32_Process.Handle="2180"
PropertyValue
CommandLine"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
CreationDate20110420131245.071721-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionmbamgui.exe
ExecutablePathC:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
Handle2180
HandleCount59
KernelModeTime0
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namembamgui.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount221
OtherTransferCount822
PageFaults1791
PageFileUsage1284
ParentProcessId1924
PeakPageFileUsage1408
PeakVirtualSize71831552
PeakWorkingSetSize5028
Priority8
PrivatePageCount1314816
ProcessId2180
QuotaNonPagedPoolUsage8
QuotaPagedPoolUsage126
QuotaPeakNonPagedPoolUsage9
QuotaPeakPagedPoolUsage131
ReadOperationCount13
ReadTransferCount114192
SessionId1
ThreadCount3
UserModeTime0
VirtualSize69521408
WindowsVersion6.1.7601
WorkingSetSize4911104
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="2228"
PropertyValue
CommandLine"C:\Windows\System32\rundll32.exe" C:\PROGRA~2\ThinkPad\UTILIT~1\PWMTR64V.DLL,PwrMgrBkGndMonitor
CreationDate20110420131246.179323-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionrundll32.exe
ExecutablePathC:\Windows\system32\rundll32.exe
Handle2228
HandleCount222
KernelModeTime7332047
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namerundll32.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount3373
OtherTransferCount20722
PageFaults4615
PageFileUsage4264
ParentProcessId2144
PeakPageFileUsage4660
PeakVirtualSize105046016
PeakWorkingSetSize12884
Priority8
PrivatePageCount4366336
ProcessId2228
QuotaNonPagedPoolUsage17
QuotaPagedPoolUsage180
QuotaPeakNonPagedPoolUsage19
QuotaPeakPagedPoolUsage184
ReadOperationCount186
ReadTransferCount3913302
SessionId1
ThreadCount7
UserModeTime1092007
VirtualSize101871616
WindowsVersion6.1.7601
WorkingSetSize13160448
WriteOperationCount2
WriteTransferCount1912
Win32_Process.Handle="2432"
PropertyValue
CommandLineC:\Windows\SysWOW64\PnkBstrA.exe
CreationDate20110420131255.398940-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionPnkBstrA.exe
ExecutablePathC:\Windows\SysWOW64\PnkBstrA.exe
Handle2432
HandleCount79
KernelModeTime156001
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
NamePnkBstrA.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount114
OtherTransferCount282
PageFaults1067
PageFileUsage1164
ParentProcessId512
PeakPageFileUsage1272
PeakVirtualSize51822592
PeakWorkingSetSize4076
Priority8
PrivatePageCount1191936
ProcessId2432
QuotaNonPagedPoolUsage10
QuotaPagedPoolUsage86
QuotaPeakNonPagedPoolUsage11
QuotaPeakPagedPoolUsage87
ReadOperationCount0
ReadTransferCount0
SessionId0
ThreadCount4
UserModeTime0
VirtualSize49201152
WindowsVersion6.1.7601
WorkingSetSize4124672
WriteOperationCount1
WriteTransferCount188
Win32_Process.Handle="2484"
PropertyValue
CommandLineC:\Windows\system32\svchost.exe -k imgsvc
CreationDate20110420131257.395743-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionsvchost.exe
ExecutablePathC:\Windows\system32\svchost.exe
Handle2484
HandleCount102
KernelModeTime0
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namesvchost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount200
OtherTransferCount720
PageFaults1505
PageFileUsage1748
ParentProcessId512
PeakPageFileUsage1908
PeakVirtualSize35545088
PeakWorkingSetSize5328
Priority8
PrivatePageCount1789952
ProcessId2484
QuotaNonPagedPoolUsage9
QuotaPagedPoolUsage65
QuotaPeakNonPagedPoolUsage10
QuotaPeakPagedPoolUsage65
ReadOperationCount0
ReadTransferCount0
SessionId0
ThreadCount6
UserModeTime312002
VirtualSize33972224
WindowsVersion6.1.7601
WorkingSetSize5394432
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="2756"
PropertyValue
CommandLineC:\Windows\system32\SearchIndexer.exe /Embedding
CreationDate20110420131302.247352-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionSearchIndexer.exe
ExecutablePathC:\Windows\system32\SearchIndexer.exe
Handle2756
HandleCount874
KernelModeTime29796191
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
NameSearchIndexer.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount308212
OtherTransferCount19654186
PageFaults25858
PageFileUsage51384
ParentProcessId512
PeakPageFileUsage52464
PeakVirtualSize273133568
PeakWorkingSetSize49032
Priority8
PrivatePageCount52617216
ProcessId2756
QuotaNonPagedPoolUsage71
QuotaPagedPoolUsage416
QuotaPeakNonPagedPoolUsage164
QuotaPeakPagedPoolUsage417
ReadOperationCount1633
ReadTransferCount24943516
SessionId0
ThreadCount12
UserModeTime67548433
VirtualSize273002496
WindowsVersion6.1.7601
WorkingSetSize48537600
WriteOperationCount854
WriteTransferCount25407090
Win32_Process.Handle="2976"
PropertyValue
CommandLineC:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
CreationDate20110420131303.510954-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionsvchost.exe
ExecutablePathC:\Windows\system32\svchost.exe
Handle2976
HandleCount93
KernelModeTime312002
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namesvchost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount1389
OtherTransferCount47288
PageFaults1576
PageFileUsage2316
ParentProcessId512
PeakPageFileUsage2420
PeakVirtualSize36610048
PeakWorkingSetSize5660
Priority8
PrivatePageCount2371584
ProcessId2976
QuotaNonPagedPoolUsage11
QuotaPagedPoolUsage65
QuotaPeakNonPagedPoolUsage13
QuotaPeakPagedPoolUsage65
ReadOperationCount0
ReadTransferCount0
SessionId0
ThreadCount5
UserModeTime156001
VirtualSize35528704
WindowsVersion6.1.7601
WorkingSetSize5763072
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="632"
PropertyValue
CommandLineC:\Windows\System32\svchost.exe -k LocalServicePeerNet
CreationDate20110420131323.042188-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionsvchost.exe
ExecutablePathC:\Windows\System32\svchost.exe
Handle632
HandleCount362
KernelModeTime2808018
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namesvchost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount12416
OtherTransferCount396789
PageFaults4942
PageFileUsage10352
ParentProcessId512
PeakPageFileUsage10396
PeakVirtualSize100651008
PeakWorkingSetSize13056
Priority8
PrivatePageCount10600448
ProcessId632
QuotaNonPagedPoolUsage39
QuotaPagedPoolUsage135
QuotaPeakNonPagedPoolUsage73
QuotaPeakPagedPoolUsage138
ReadOperationCount39
ReadTransferCount2309240
SessionId0
ThreadCount10
UserModeTime2496016
VirtualSize92766208
WindowsVersion6.1.7601
WorkingSetSize13340672
WriteOperationCount82
WriteTransferCount401674
Win32_Process.Handle="3120"
PropertyValue
CommandLineC:\PROGRA~2\ThinkPad\UTILIT~1\SCHTASK.exe
CreationDate20110420131324.477391-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionSCHTASK.EXE
ExecutablePathC:\PROGRA~2\ThinkPad\UTILIT~1\SCHTASK.exe
Handle3120
HandleCount95
KernelModeTime0
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
NameSCHTASK.EXE
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount336
OtherTransferCount1358
PageFaults1585
PageFileUsage2504
ParentProcessId2228
PeakPageFileUsage2660
PeakVirtualSize96391168
PeakWorkingSetSize6052
Priority8
PrivatePageCount2564096
ProcessId3120
QuotaNonPagedPoolUsage10
QuotaPagedPoolUsage156
QuotaPeakNonPagedPoolUsage13
QuotaPeakPagedPoolUsage166
ReadOperationCount1
ReadTransferCount60
SessionId1
ThreadCount3
UserModeTime156001
VirtualSize91086848
WindowsVersion6.1.7601
WorkingSetSize6135808
WriteOperationCount11
WriteTransferCount1914
Win32_Process.Handle="3148"
PropertyValue
CommandLineC:\Windows\system32\igfxext.exe -Embedding
CreationDate20110420131324.617791-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionigfxext.exe
ExecutablePathC:\Windows\system32\igfxext.exe
Handle3148
HandleCount67
KernelModeTime156001
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Nameigfxext.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount152
OtherTransferCount594
PageFaults1439
PageFileUsage1688
ParentProcessId692
PeakPageFileUsage1800
PeakVirtualSize55713792
PeakWorkingSetSize5180
Priority8
PrivatePageCount1728512
ProcessId3148
QuotaNonPagedPoolUsage7
QuotaPagedPoolUsage91
QuotaPeakNonPagedPoolUsage9
QuotaPeakPagedPoolUsage93
ReadOperationCount0
ReadTransferCount0
SessionId1
ThreadCount4
UserModeTime156001
VirtualSize51519488
WindowsVersion6.1.7601
WorkingSetSize5210112
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="3176"
PropertyValue
CommandLineC:\Windows\system32\igfxsrvc.exe -Embedding
CreationDate20110420131324.664591-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionigfxsrvc.exe
ExecutablePathC:\Windows\system32\igfxsrvc.exe
Handle3176
HandleCount76
KernelModeTime1248008
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Nameigfxsrvc.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount482
OtherTransferCount3568
PageFaults1649
PageFileUsage2152
ParentProcessId692
PeakPageFileUsage2264
PeakVirtualSize63868928
PeakWorkingSetSize5892
Priority8
PrivatePageCount2203648
ProcessId3176
QuotaNonPagedPoolUsage8
QuotaPagedPoolUsage103
QuotaPeakNonPagedPoolUsage10
QuotaPeakPagedPoolUsage106
ReadOperationCount0
ReadTransferCount0
SessionId1
ThreadCount4
UserModeTime156001
VirtualSize59674624
WindowsVersion6.1.7601
WorkingSetSize5984256
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="3848"
PropertyValue
CommandLine"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
CreationDate20110420131359.108252-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionfirefox.exe
ExecutablePathC:\Program Files (x86)\Mozilla Firefox\firefox.exe
Handle3848
HandleCount471
KernelModeTime311533997
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namefirefox.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount481559
OtherTransferCount13001419
PageFaults275645
PageFileUsage123320
ParentProcessId1860
PeakPageFileUsage156548
PeakVirtualSize334819328
PeakWorkingSetSize174096
Priority8
PrivatePageCount126279680
ProcessId3848
QuotaNonPagedPoolUsage83
QuotaPagedPoolUsage292
QuotaPeakNonPagedPoolUsage1144
QuotaPeakPagedPoolUsage325
ReadOperationCount5931
ReadTransferCount51579240
SessionId1
ThreadCount25
UserModeTime539451458
VirtualSize308744192
WindowsVersion6.1.7601
WorkingSetSize147611648
WriteOperationCount26516
WriteTransferCount652626229
Win32_Process.Handle="3652"
PropertyValue
CommandLine"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe"
CreationDate20110420131504.598167-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionmbamservice.exe
ExecutablePathC:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
Handle3652
HandleCount126
KernelModeTime70512452
MaximumWorkingSetSize80
MinimumWorkingSetSize80
Namembamservice.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount122859
OtherTransferCount1542734
PageFaults337010
PageFileUsage91548
ParentProcessId512
PeakPageFileUsage143400
PeakVirtualSize204767232
PeakWorkingSetSize144708
Priority8
PrivatePageCount93745152
ProcessId3652
QuotaNonPagedPoolUsage15
QuotaPagedPoolUsage112
QuotaPeakNonPagedPoolUsage16
QuotaPeakPagedPoolUsage170
ReadOperationCount2356
ReadTransferCount1165232802
SessionId0
ThreadCount8
UserModeTime85176546
VirtualSize159186944
WindowsVersion6.1.7601
WorkingSetSize37322752
WriteOperationCount2
WriteTransferCount242
Win32_Process.Handle="192"
PropertyValue
CommandLineC:\Windows\System32\svchost.exe -k secsvcs
CreationDate20110420131506.111370-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionsvchost.exe
ExecutablePathC:\Windows\System32\svchost.exe
Handle192
HandleCount316
KernelModeTime6552042
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namesvchost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount13712
OtherTransferCount482220
PageFaults85770
PageFileUsage69380
ParentProcessId512
PeakPageFileUsage98928
PeakVirtualSize163717120
PeakWorkingSetSize99644
Priority8
PrivatePageCount71045120
ProcessId192
QuotaNonPagedPoolUsage32
QuotaPagedPoolUsage139
QuotaPeakNonPagedPoolUsage34
QuotaPeakPagedPoolUsage148
ReadOperationCount2663
ReadTransferCount39086613
SessionId0
ThreadCount13
UserModeTime42900275
VirtualSize151441408
WindowsVersion6.1.7601
WorkingSetSize27324416
WriteOperationCount47
WriteTransferCount881432
Win32_Process.Handle="3296"
PropertyValue
CommandLine"C:\Windows\system32\notepad.exe"
CreationDate20110420131926.148227-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionnotepad.exe
ExecutablePathC:\Windows\system32\notepad.exe
Handle3296
HandleCount58
KernelModeTime468003
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namenotepad.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount394
OtherTransferCount1168
PageFaults1576
PageFileUsage1592
ParentProcessId1860
PeakPageFileUsage1600
PeakVirtualSize82948096
PeakWorkingSetSize6128
Priority8
PrivatePageCount1630208
ProcessId3296
QuotaNonPagedPoolUsage7
QuotaPagedPoolUsage148
QuotaPeakNonPagedPoolUsage8
QuotaPeakPagedPoolUsage158
ReadOperationCount2
ReadTransferCount24334
SessionId1
ThreadCount1
UserModeTime468003
VirtualSize78143488
WindowsVersion6.1.7601
WorkingSetSize5685248
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="2840"
PropertyValue
CommandLine"C:\Program Files (x86)\Skype\Phone\Skype.exe"
CreationDate20110420131957.519882-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionSkype.exe
ExecutablePathC:\Program Files (x86)\Skype\Phone\Skype.exe
Handle2840
HandleCount1043
KernelModeTime29328188
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
NameSkype.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount26172
OtherTransferCount1237775
PageFaults102572
PageFileUsage108576
ParentProcessId1860
PeakPageFileUsage175728
PeakVirtualSize483172352
PeakWorkingSetSize171964
Priority8
PrivatePageCount111181824
ProcessId2840
QuotaNonPagedPoolUsage105
QuotaPagedPoolUsage485
QuotaPeakNonPagedPoolUsage158
QuotaPeakPagedPoolUsage541
ReadOperationCount4414
ReadTransferCount7478265
SessionId1
ThreadCount51
UserModeTime76284489
VirtualSize431652864
WindowsVersion6.1.7601
WorkingSetSize138153984
WriteOperationCount2538
WriteTransferCount3710085
Win32_Process.Handle="1160"
PropertyValue
CommandLine"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=3848.89ddbe0.882360844 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll" 3848 plugin \\.\pipe\gecko-crash-server-pipe.3848
CreationDate20110420132007.644300-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionplugin-container.exe
ExecutablePathC:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
Handle1160
HandleCount206
KernelModeTime2652017
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Nameplugin-container.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount3952
OtherTransferCount35661
PageFaults6127
PageFileUsage17184
ParentProcessId3848
PeakPageFileUsage17184
PeakVirtualSize146825216
PeakWorkingSetSize21920
Priority8
PrivatePageCount17596416
ProcessId1160
QuotaNonPagedPoolUsage26
QuotaPagedPoolUsage216
QuotaPeakNonPagedPoolUsage27
QuotaPeakPagedPoolUsage216
ReadOperationCount1152
ReadTransferCount665719
SessionId1
ThreadCount12
UserModeTime3900025
VirtualSize146825216
WindowsVersion6.1.7601
WorkingSetSize22446080
WriteOperationCount821
WriteTransferCount72685
Win32_Process.Handle="1784"
PropertyValue
CreationDate20110420132021.330778-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionaudiodg.exe
Handle1784
HandleCount125
KernelModeTime1404009
Nameaudiodg.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount1179
OtherTransferCount12044
PageFaults8387
PageFileUsage17516
ParentProcessId904
PeakPageFileUsage24532
PeakVirtualSize70348800
PeakWorkingSetSize24640
Priority8
PrivatePageCount17936384
ProcessId1784
QuotaNonPagedPoolUsage11
QuotaPagedPoolUsage92
QuotaPeakNonPagedPoolUsage14
QuotaPeakPagedPoolUsage96
ReadOperationCount1
ReadTransferCount185528
SessionId0
ThreadCount5
UserModeTime3120020
VirtualSize60366848
WindowsVersion6.1.7601
WorkingSetSize17866752
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="684"
PropertyValue
CommandLine"C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe" /SILENT
CreationDate20110420132030.473417-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionskypePM.exe
ExecutablePathC:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
Handle684
HandleCount220
KernelModeTime6084039
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
NameskypePM.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount3576
OtherTransferCount47284
PageFaults80072
PageFileUsage12980
ParentProcessId2840
PeakPageFileUsage40356
PeakVirtualSize135389184
PeakWorkingSetSize20364
Priority8
PrivatePageCount13291520
ProcessId684
QuotaNonPagedPoolUsage44
QuotaPagedPoolUsage187
QuotaPeakNonPagedPoolUsage46
QuotaPeakPagedPoolUsage234
ReadOperationCount846
ReadTransferCount313635
SessionId1
ThreadCount8
UserModeTime9828063
VirtualSize119701504
WindowsVersion6.1.7601
WorkingSetSize20422656
WriteOperationCount468
WriteTransferCount32137
Win32_Process.Handle="3280"
PropertyValue
CommandLine"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
CreationDate20110420132242.683979-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionSearchProtocolHost.exe
ExecutablePathC:\Windows\system32\SearchProtocolHost.exe
Handle3280
HandleCount318
KernelModeTime1560010
MaximumWorkingSetSize32768
MinimumWorkingSetSize200
NameSearchProtocolHost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount1343
OtherTransferCount17500
PageFaults2464
PageFileUsage3508
ParentProcessId2756
PeakPageFileUsage3764
PeakVirtualSize60010496
PeakWorkingSetSize8884
Priority4
PrivatePageCount3592192
ProcessId3280
QuotaNonPagedPoolUsage12
QuotaPagedPoolUsage121
QuotaPeakNonPagedPoolUsage13
QuotaPeakPagedPoolUsage122
ReadOperationCount11
ReadTransferCount112953
SessionId0
ThreadCount7
UserModeTime312002
VirtualSize59224064
WindowsVersion6.1.7601
WorkingSetSize8835072
WriteOperationCount2
WriteTransferCount248
Win32_Process.Handle="2660"
PropertyValue
CommandLine"C:\Windows\system32\SearchFilterHost.exe" 0 508 512 520 65536 516
CreationDate20110420132244.110061-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionSearchFilterHost.exe
ExecutablePathC:\Windows\system32\SearchFilterHost.exe
Handle2660
HandleCount109
KernelModeTime624004
MaximumWorkingSetSize32768
MinimumWorkingSetSize200
NameSearchFilterHost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount557
OtherTransferCount5562
PageFaults2104
PageFileUsage2788
ParentProcessId2756
PeakPageFileUsage2792
PeakVirtualSize52551680
PeakWorkingSetSize6504
Priority4
PrivatePageCount2854912
ProcessId2660
QuotaNonPagedPoolUsage9
QuotaPagedPoolUsage111
QuotaPeakNonPagedPoolUsage9
QuotaPeakPagedPoolUsage111
ReadOperationCount353
ReadTransferCount42126
SessionId0
ThreadCount6
UserModeTime468003
VirtualSize52224000
WindowsVersion6.1.7601
WorkingSetSize6651904
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="1140"
PropertyValue
CommandLine"C:\Users\Mr_Pryor\Downloads\Windows_NT6_BSOD_v3.03_jcgriff2_.exe"
CreationDate20110420132254.126634-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionWindows_NT6_BSOD_v3.03_jcgriff2_.exe
ExecutablePathC:\Users\Mr_Pryor\Downloads\Windows_NT6_BSOD_v3.03_jcgriff2_.exe
Handle1140
HandleCount52
KernelModeTime312002
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
NameWindows_NT6_BSOD_v3.03_jcgriff2_.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount280
OtherTransferCount3558
PageFaults1160
PageFileUsage2108
ParentProcessId3848
PeakPageFileUsage2116
PeakVirtualSize66646016
PeakWorkingSetSize4388
Priority8
PrivatePageCount2158592
ProcessId1140
QuotaNonPagedPoolUsage8
QuotaPagedPoolUsage115
QuotaPeakNonPagedPoolUsage8
QuotaPeakPagedPoolUsage123
ReadOperationCount1
ReadTransferCount2
SessionId1
ThreadCount1
UserModeTime0
VirtualSize62533632
WindowsVersion6.1.7601
WorkingSetSize4288512
WriteOperationCount3
WriteTransferCount35487
Win32_Process.Handle="3220"
PropertyValue
CommandLine\??\C:\Windows\system32\conhost.exe
CreationDate20110420132254.726668-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionconhost.exe
ExecutablePathC:\Windows\system32\conhost.exe
Handle3220
HandleCount57
KernelModeTime1248008
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Nameconhost.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount323
OtherTransferCount1364
PageFaults1288
PageFileUsage1508
ParentProcessId480
PeakPageFileUsage1516
PeakVirtualSize70672384
PeakWorkingSetSize5044
Priority8
PrivatePageCount1544192
ProcessId3220
QuotaNonPagedPoolUsage7
QuotaPagedPoolUsage130
QuotaPeakNonPagedPoolUsage7
QuotaPeakPagedPoolUsage137
ReadOperationCount2
ReadTransferCount9254
SessionId1
ThreadCount2
UserModeTime624004
VirtualSize66539520
WindowsVersion6.1.7601
WorkingSetSize5165056
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="2780"
PropertyValue
CommandLinecmd /c ""C:\Users\Mr_Pryor\AppData\Local\Temp\6132.tmp\Windows_NT6_BSOD_v3.03_jcgriff2_.bat""
CreationDate20110420132255.634720-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptioncmd.exe
ExecutablePathC:\Windows\SysWOW64\cmd.exe
Handle2780
HandleCount51
KernelModeTime1248008
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namecmd.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount5600
OtherTransferCount1198954
PageFaults2409
PageFileUsage5428
ParentProcessId1140
PeakPageFileUsage5836
PeakVirtualSize58425344
PeakWorkingSetSize4312
Priority8
PrivatePageCount5558272
ProcessId2780
QuotaNonPagedPoolUsage8
QuotaPagedPoolUsage91
QuotaPeakNonPagedPoolUsage8
QuotaPeakPagedPoolUsage100
ReadOperationCount665
ReadTransferCount2939648
SessionId1
ThreadCount4
UserModeTime936006
VirtualSize54038528
WindowsVersion6.1.7601
WorkingSetSize4128768
WriteOperationCount126
WriteTransferCount530255
Win32_Process.Handle="1300"
PropertyValue
CommandLineC:\Windows\system32\wbem\wmiprvse.exe
CreationDate20110420132303.364162-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
DescriptionWmiPrvSE.exe
ExecutablePathC:\Windows\system32\wbem\wmiprvse.exe
Handle1300
HandleCount317
KernelModeTime5772037
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
NameWmiPrvSE.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount6294
OtherTransferCount51498
PageFaults10245
PageFileUsage6448
ParentProcessId692
PeakPageFileUsage6776
PeakVirtualSize93900800
PeakWorkingSetSize12768
Priority8
PrivatePageCount6602752
ProcessId1300
QuotaNonPagedPoolUsage17
QuotaPagedPoolUsage136
QuotaPeakNonPagedPoolUsage19
QuotaPeakPagedPoolUsage164
ReadOperationCount10
ReadTransferCount237688
SessionId0
ThreadCount17
UserModeTime1560010
VirtualSize79265792
WindowsVersion6.1.7601
WorkingSetSize12890112
WriteOperationCount8
WriteTransferCount768
Win32_Process.Handle="2020"
PropertyValue
CommandLinecmd /c where /r C:\ /f /t *.sys
CreationDate20110420132344.633523-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptioncmd.exe
ExecutablePathC:\Windows\SysWOW64\cmd.exe
Handle2020
HandleCount31
KernelModeTime0
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namecmd.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount492
OtherTransferCount292950
PageFaults963
PageFileUsage2116
ParentProcessId2780
PeakPageFileUsage2144
PeakVirtualSize54165504
PeakWorkingSetSize3696
Priority8
PrivatePageCount2166784
ProcessId2020
QuotaNonPagedPoolUsage7
QuotaPagedPoolUsage91
QuotaPeakNonPagedPoolUsage7
QuotaPeakPagedPoolUsage99
ReadOperationCount2
ReadTransferCount18158
SessionId1
ThreadCount1
UserModeTime312002
VirtualSize50040832
WindowsVersion6.1.7601
WorkingSetSize3506176
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="2556"
PropertyValue
CommandLinewhere /r C:\ /f /t *.sys
CreationDate20110420132345.168553-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionwhere.exe
ExecutablePathC:\Windows\SysWOW64\where.exe
Handle2556
HandleCount29
KernelModeTime4992032
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namewhere.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount4696
OtherTransferCount1475810
PageFaults864
PageFileUsage928
ParentProcessId2020
PeakPageFileUsage928
PeakVirtualSize48410624
PeakWorkingSetSize3296
Priority8
PrivatePageCount950272
ProcessId2556
QuotaNonPagedPoolUsage7
QuotaPagedPoolUsage91
QuotaPeakNonPagedPoolUsage7
QuotaPeakPagedPoolUsage91
ReadOperationCount0
ReadTransferCount0
SessionId1
ThreadCount1
UserModeTime6240040
VirtualSize48406528
WindowsVersion6.1.7601
WorkingSetSize3375104
WriteOperationCount42
WriteTransferCount1605
Win32_Process.Handle="3600"
PropertyValue
CommandLine"C:\Windows\system32\perfmon.exe" /report
CreationDate20110420132352.918997-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionperfmon.exe
ExecutablePathC:\Windows\system32\perfmon.exe
Handle3600
HandleCount402
KernelModeTime4212027
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Nameperfmon.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount7515
OtherTransferCount34798
PageFaults18974
PageFileUsage15872
ParentProcessId1860
PeakPageFileUsage15872
PeakVirtualSize203755520
PeakWorkingSetSize34128
Priority8
PrivatePageCount16252928
ProcessId3600
QuotaNonPagedPoolUsage28
QuotaPagedPoolUsage343
QuotaPeakNonPagedPoolUsage28
QuotaPeakPagedPoolUsage345
ReadOperationCount106
ReadTransferCount1497523
SessionId1
ThreadCount18
UserModeTime1560010
VirtualSize203755520
WindowsVersion6.1.7601
WorkingSetSize34947072
WriteOperationCount2
WriteTransferCount12617
Win32_Process.Handle="1096"
PropertyValue
CommandLinetaskeng.exe {C9D666AE-FC56-4EF9-9771-085DBC307F3A}
CreationDate20110420132412.681127-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptiontaskeng.exe
ExecutablePathC:\Windows\system32\taskeng.exe
Handle1096
HandleCount92
KernelModeTime0
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Nametaskeng.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount470
OtherTransferCount1916
PageFaults1351
PageFileUsage1916
ParentProcessId964
PeakPageFileUsage1916
PeakVirtualSize35143680
PeakWorkingSetSize4880
Priority6
PrivatePageCount1961984
ProcessId1096
QuotaNonPagedPoolUsage9
QuotaPagedPoolUsage61
QuotaPeakNonPagedPoolUsage9
QuotaPeakPagedPoolUsage61
ReadOperationCount3
ReadTransferCount444968
SessionId0
ThreadCount8
UserModeTime156001
VirtualSize35143680
WindowsVersion6.1.7601
WorkingSetSize4997120
WriteOperationCount0
WriteTransferCount0
Win32_Process.Handle="3564"
PropertyValue
CommandLineC:\Windows\system32\rundll32.exe C:\Windows\system32\pla.dll,PlaHost "system\System Diagnostics" "0xe10_0xea4_0x57a7dc9e"
CreationDate20110420132415.105266-420
CSCreationClassNameWin32_ComputerSystem
CSNameMR_PRYOR-PC
Descriptionrundll32.exe
ExecutablePathC:\Windows\system32\rundll32.exe
Handle3564
HandleCount596
KernelModeTime3744024
MaximumWorkingSetSize1380
MinimumWorkingSetSize200
Namerundll32.exe
OSCreationClassNameWin32_OperatingSystem
OSNameMicrosoft Windows 7 Home Premium |C:\Windows|\Device\Harddisk0\Partition1
OtherOperationCount7668
OtherTransferCount80688
PageFaults15250
PageFileUsage12560
ParentProcessId1096
PeakPageFileUsage13652
PeakVirtualSize132349952
PeakWorkingSetSize16892
Priority10
PrivatePageCount12861440
ProcessId3564
QuotaNonPagedPoolUsage25
QuotaPagedPoolUsage142
QuotaPeakNonPagedPoolUsage32
QuotaPeakPagedPoolUsage142
ReadOperationCount10
ReadTransferCount1493505
SessionId0
ThreadCount44
UserModeTime1560010
VirtualSize119017472
WindowsVersion6.1.7601
WorkingSetSize17293312
WriteOperationCount6
WriteTransferCount344064
Logged On UsersTop: of  1 
QueryQuery Result
root\cimv2:SELECT * FROM Win32_LoggedOnUser0x0
Returned Objects
Win32_LoggedOnUser.Antecedent="\\\\.\\root\\cimv2:Win32_Account.Domain=\"MR_PRYOR-PC\",Name=\"SYSTEM\"",Dependent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"999\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_Account.Domain="MR_PRYOR-PC",Name="SYSTEM"
Dependent\\.\root\cimv2:Win32_LogonSession.LogonId="999"
Win32_LoggedOnUser.Antecedent="\\\\.\\root\\cimv2:Win32_Account.Domain=\"MR_PRYOR-PC\",Name=\"LOCAL SERVICE\"",Dependent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"997\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_Account.Domain="MR_PRYOR-PC",Name="LOCAL SERVICE"
Dependent\\.\root\cimv2:Win32_LogonSession.LogonId="997"
Win32_LoggedOnUser.Antecedent="\\\\.\\root\\cimv2:Win32_Account.Domain=\"MR_PRYOR-PC\",Name=\"NETWORK SERVICE\"",Dependent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"996\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_Account.Domain="MR_PRYOR-PC",Name="NETWORK SERVICE"
Dependent\\.\root\cimv2:Win32_LogonSession.LogonId="996"
Win32_LoggedOnUser.Antecedent="\\\\.\\root\\cimv2:Win32_Account.Domain=\"Mr_Pryor-PC\",Name=\"Mr_Pryor\"",Dependent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"129795\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_Account.Domain="Mr_Pryor-PC",Name="Mr_Pryor"
Dependent\\.\root\cimv2:Win32_LogonSession.LogonId="129795"
Win32_LoggedOnUser.Antecedent="\\\\.\\root\\cimv2:Win32_Account.Domain=\"Mr_Pryor-PC\",Name=\"Mr_Pryor\"",Dependent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"1787154\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_Account.Domain="Mr_Pryor-PC",Name="Mr_Pryor"
Dependent\\.\root\cimv2:Win32_LogonSession.LogonId="1787154"
Win32_LoggedOnUser.Antecedent="\\\\.\\root\\cimv2:Win32_Account.Domain=\"MR_PRYOR-PC\",Name=\"ANONYMOUS LOGON\"",Dependent="\\\\.\\root\\cimv2:Win32_LogonSession.LogonId=\"280030\""
PropertyValue
Antecedent\\.\root\cimv2:Win32_Account.Domain="MR_PRYOR-PC",Name="ANONYMOUS LOGON"
Dependent\\.\root\cimv2:Win32_LogonSession.LogonId="280030"
User AccountsTop: of  1 
QueryQuery Result
root\cimv2:SELECT Name FROM Win32_UserAccount WHERE LocalAccount=TRUE0x0
Returned Objects
Win32_UserAccount.Domain="Mr_Pryor-PC",Name="Administrator"
PropertyValue
DomainMr_Pryor-PC
NameAdministrator
Win32_UserAccount.Domain="Mr_Pryor-PC",Name="Guest"
PropertyValue
DomainMr_Pryor-PC
NameGuest
Win32_UserAccount.Domain="Mr_Pryor-PC",Name="HomeGroupUser$"
PropertyValue
DomainMr_Pryor-PC
NameHomeGroupUser$
Win32_UserAccount.Domain="Mr_Pryor-PC",Name="Mr_Pryor"
PropertyValue
DomainMr_Pryor-PC
NameMr_Pryor
CPU
Process
Image StatisticsTop: of  68 
Threads
Image NameProcess IDLaunchedUsedKernel CPU%User CPU%CPU%
Idle03253.70.053.7
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
ekrn.exe159233105.021.926.9
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
ekrn29105.021.926.9
firefox.exe38483361.22.63.8
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
where.exe2556111.11.62.6
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
System4101161.60.01.6
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
SearchIndexer.exe27561230.40.60.9
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
WSearch730.40.60.9
WmiPrvSE.exe130025160.50.20.8
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
rundll32.exe3564100350.30.40.7
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
svchost.exe (Akamai)13761120.60.10.7
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
Akamai820.60.10.7
perfmon.exe36001820.10.50.6
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
svchost.exe (netsvcs)964109410.20.30.5
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
ProfSvc41200.10.10.1
iphlpsvc1130.00.00.0
ShellHWDetection310.00.00.0
MMCSS100.00.00.0
wuauserv200.00.00.0
BITS100.00.00.0
Browser200.00.00.0
LanmanServer100.00.00.0
Winmgmt100.00.00.0
Schedule300.00.00.0
EapHost200.00.00.0
Themes100.00.00.0
mbamservice.exe3652132450.20.20.4
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
MBAMService129450.20.20.4
svchost.exe (DcomLaunch)6921670.30.10.4
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
Power300.00.00.0
PlugPlay100.00.00.0
dwm.exe1820520.00.20.2
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
svchost.exe (LocalSystemNetworkRestricted)9362510.00.20.2
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
SysMain110.00.20.2
Wlansvc400.00.00.0
HomeGroupListener800.00.00.0
WdiSystemHost100.00.00.0
wudfsvc100.00.00.0
UxSms100.00.00.0
AudioEndpointBuilder200.00.00.0
csrss.exe4801030.20.00.2
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
services.exe512940.20.00.2
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
svchost.exe (secsvcs)1921840.00.10.1
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
WinDefend710.00.00.0
WmiPrvSE.exe2136820.00.10.1
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
svchost.exe (LocalServicePeerNet)6321730.00.00.1
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
p2pimsvc900.00.00.0
PNRPsvc100.00.00.0
lsass.exe5721120.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
Skype.exe28405130.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
svchost.exe (NetworkService)8801820.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
CryptSvc100.00.00.0
Dnscache500.00.00.0
NlaSvc200.00.00.0
plugin-container.exe11601210.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
csrss.exe412910.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
rundll32.exe2228710.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
SearchFilterHost.exe2660610.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
SearchProtocolHost.exe3280810.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
spoolsv.exe12481730.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
Spooler1000.00.00.0
svchost.exe (LocalServiceNetworkRestricted)9042220.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
eventlog520.00.00.0
wscsvc200.00.00.0
HomeGroupProvider300.00.00.0
Dhcp200.00.00.0
lmhosts200.00.00.0
AudioSrv200.00.00.0
AppleMobileDeviceService.exe1500500.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
Apple Mobile Device100.00.00.0
audiodg.exe1784500.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
cmd.exe2020100.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
cmd.exe2780400.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
conhost.exe3220200.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
DTLite.exe1168700.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
egui.exe1148600.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
explorer.exe18602800.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
hkcmd.exe1444300.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
ibmpmsvc.exe756600.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
IBMPMSVC400.00.00.0
igfxext.exe3148400.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
igfxpers.exe1440300.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
igfxsrvc.exe3176400.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
igfxtray.exe1468300.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
jusched.exe2160100.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
lsm.exe5801000.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
mbamgui.exe2180300.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
mDNSResponder.exe1540400.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
Bonjour Service100.00.00.0
notepad.exe3296100.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
PnkBstrA.exe2432400.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
PnkBstrA100.00.00.0
PresentationFontCache.exe1644600.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
FontCache3.0.0.0100.00.00.0
RAVCpl64.exe14241100.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
rundll32.exe2144100.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
SCHTASK.EXE3120310.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
SearchFilterHost.exe4816110.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
skypePM.exe684800.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
smss.exe272200.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
svchost.exe (imgsvc)2484600.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
stisvc300.00.00.0
svchost.exe (LocalService)3081800.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
EventSystem600.00.00.0
netprofm200.00.00.0
WdiServiceHost100.00.00.0
svchost.exe (LocalServiceAndNoImpersonation)16121900.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
FontCache200.00.00.0
SSDPSRV400.00.00.0
FDResPub200.00.00.0
svchost.exe (LocalServiceNoNetwork)12802120.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
DPS600.00.00.0
MpsSvc500.00.00.0
BFE200.00.00.0
svchost.exe (NetworkServiceNetworkRestricted)2976500.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
PolicyAgent100.00.00.0
svchost.exe (RPCSS)7962800.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
RpcSs200.00.00.0
taskeng.exe1096800.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
taskhost.exe1752800.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
Windows_NT6_BSOD_v3.03_jcgriff2_.exe1140100.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
wininit.exe464300.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
winlogon.exe564300.00.00.0
ServiceLaunchedUsedKernel CPU%User CPU%CPU%
110322695.0
ProcessTop: of  21 
counterMeanMinimumMaximum
Virtual Bytes6,987,365,6616,850,289,6647,024,287,744
Working Set1,224,666,3301,173,848,0641,240,465,408
Private Bytes1,028,808,301984,784,8961,042,432,000
Page File Bytes1,028,808,301984,784,8961,042,432,000
Working Set - Private702,070,515664,199,168715,907,072
IO Data Bytes/sec19,921,4266,138,74034,664,723
IO Write Bytes/sec11,330,3581,716,01624,912,162
Pool Paged Bytes9,764,2329,591,4409,826,936
IO Read Bytes/sec8,591,0682,053,37623,600,703
Pool Nonpaged Bytes1,374,5371,331,6841,387,156
IO Other Bytes/sec169,56227,718762,114
Page Faults/sec7,1811,44711,324
IO Other Operations/sec3,62744421,970
IO Data Operations/sec1,5764544,360
IO Read Operations/sec1,1583143,344
Thread Count846767887
IO Write Operations/sec418891,016
% Processor Time197184202
% Privileged Time13658183
% User Time6214130
Priority Base000
ProcessorTop: of  9 
counterMeanMinimumMaximum
Interrupts/sec3,0942,3745,908
DPCs Queued/sec7603131,792
% Idle Time551183
% Processor Time451789
% User Time31766
% Privileged Time14337
DPC Rate10037
% DPC Time0.80106
% Interrupt Time0.35403
Processor User Time by CPUTop: of  3 
InstanceMeanMinimumMaximum
0501292
_Total451789
1391786
Processor Interrupts by CPUTop: of  3 
InstanceMeanMinimumMaximum
_Total3,0942,3745,908
11,5871,1864,363
01,5071,1882,390
Service
Service StatisticsTop: of  157 
ServiceProcess IDDescriptionStatusGroupCPU%
ekrn1592ESET ServiceRunning-26.9
WSearch2756Windows SearchRunning-0.9
Akamai1376Akamai NetSession InterfaceRunningAkamai0.7
MBAMService3652MBAMServiceRunning-0.4
SysMain936SuperfetchRunningLocalSystemNetworkRestricted0.2
ProfSvc964User Profile ServiceRunningnetsvcs0.1
iphlpsvc964IP HelperRunningnetsvcs0.0
eventlog904Windows Event LogRunningLocalServiceNetworkRestricted0.0
ShellHWDetection964Shell Hardware DetectionRunningnetsvcs0.0
WinDefend192Windows DefenderRunningsecsvcs0.0
AeLookupSvc-Application ExperienceStopped-0.0
ALG-Application Layer Gateway ServiceStopped-0.0
AppIDSvc-Application IdentityStopped-0.0
Appinfo-Application InformationStopped-0.0
Apple Mobile Device1500Apple Mobile DeviceRunning-0.0
AudioEndpointBuilder936Windows Audio Endpoint BuilderRunningLocalSystemNetworkRestricted0.0
AudioSrv904Windows AudioRunningLocalServiceNetworkRestricted0.0
AxInstSV-ActiveX Installer (AxInstSV)Stopped-0.0
BDESVC-BitLocker Drive Encryption ServiceStopped-0.0
BFE1280Base Filtering EngineRunningLocalServiceNoNetwork0.0
BITS964Background Intelligent Transfer ServiceRunningnetsvcs0.0
Bonjour Service1540Bonjour ServiceRunning-0.0
Browser964Computer BrowserRunningnetsvcs0.0
bthserv-Bluetooth Support ServiceStopped-0.0
CertPropSvc-Certificate PropagationStopped-0.0
clr_optimization_v2.0.50727_32-Microsoft .NET Framework NGEN v2.0.50727_X86Stopped-0.0
clr_optimization_v2.0.50727_64-Microsoft .NET Framework NGEN v2.0.50727_X64Stopped-0.0
clr_optimization_v4.0.30319_32-Microsoft .NET Framework NGEN v4.0.30319_X86Stopped-0.0
clr_optimization_v4.0.30319_64-Microsoft .NET Framework NGEN v4.0.30319_X64Stopped-0.0
COMSysApp-COM+ System ApplicationStopped-0.0
CryptSvc880Cryptographic ServicesRunningNetworkService0.0
DcomLaunch-DCOM Server Process LauncherStopped-0.0
defragsvc-Disk DefragmenterStopped-0.0
Dhcp904DHCP ClientRunningLocalServiceNetworkRestricted0.0
Dnscache880DNS ClientRunningNetworkService0.0
dot3svc-Wired AutoConfigStopped-0.0
DPS1280Diagnostic Policy ServiceRunningLocalServiceNoNetwork0.0
EapHost964Extensible Authentication ProtocolRunningnetsvcs0.0
EFS-Encrypting File System (EFS)Stopped-0.0
ehRecvr-Windows Media Center Receiver ServiceStopped-0.0
ehSched-Windows Media Center Scheduler ServiceStopped-0.0
EhttpSrv-ESET HTTP ServerStopped-0.0
EventSystem308COM+ Event SystemRunningLocalService0.0
Fax-FaxStopped-0.0
fdPHost-Function Discovery Provider HostStopped-0.0
FDResPub1612Function Discovery Resource PublicationRunningLocalServiceAndNoImpersonation0.0
FontCache1612Windows Font Cache ServiceRunningLocalServiceAndNoImpersonation0.0
FontCache3.0.0.01644Windows Presentation Foundation Font Cache 3.0.0.0Running-0.0
gpsvc-Group Policy ClientStopped-0.0
hidserv-Human Interface Device AccessStopped-0.0
hkmsvc-Health Key and Certificate ManagementStopped-0.0
HomeGroupListener936HomeGroup ListenerRunningLocalSystemNetworkRestricted0.0
HomeGroupProvider904HomeGroup ProviderRunningLocalServiceNetworkRestricted0.0
IBMPMSVC756ThinkPad PM ServiceRunning-0.0
idsvc-Windows CardSpaceStopped-0.0
IKEEXT-IKE and AuthIP IPsec Keying ModulesStopped-0.0
IPBusEnum-PnP-X IP Bus EnumeratorStopped-0.0
iPod Service-iPod ServiceStopped-0.0
KeyIso-CNG Key IsolationStopped-0.0
KtmRm-KtmRm for Distributed Transaction CoordinatorStopped-0.0
LanmanServer964ServerRunningnetsvcs0.0
LanmanWorkstation-WorkstationStopped-0.0
lltdsvc-Link-Layer Topology Discovery MapperStopped-0.0
lmhosts904TCP/IP NetBIOS HelperRunningLocalServiceNetworkRestricted0.0
Mcx2Svc-Media Center Extender ServiceStopped-0.0
MMCSS964Multimedia Class SchedulerRunningnetsvcs0.0
MpsSvc1280Windows FirewallRunningLocalServiceNoNetwork0.0
MSDTC-Distributed Transaction CoordinatorStopped-0.0
MSiSCSI-Microsoft iSCSI Initiator ServiceStopped-0.0
msiserver-Windows InstallerStopped-0.0
napagent-Network Access Protection AgentStopped-0.0
Netlogon-NetlogonStopped-0.0
Netman-Network ConnectionsStopped-0.0
netprofm308Network List ServiceRunningLocalService0.0
NetTcpPortSharing-Net.Tcp Port Sharing ServiceStopped-0.0
NlaSvc880Network Location AwarenessRunningNetworkService0.0
npggsvc-nProtect GameGuard ServiceStopped-0.0
nsi-Network Store Interface ServiceStopped-0.0
p2pimsvc632Peer Networking Identity ManagerRunningLocalServicePeerNet0.0
p2psvc-Peer Networking GroupingStopped-0.0
PcaSvc-Program Compatibility Assistant ServiceStopped-0.0
PerfHost-Performance Counter DLL HostStopped-0.0
pla-Performance Logs & AlertsStopped-0.0
PlugPlay692Plug and PlayRunningDcomLaunch0.0
PnkBstrA2432PnkBstrARunning-0.0
PNRPAutoReg-PNRP Machine Name Publication ServiceStopped-0.0
PNRPsvc632Peer Name Resolution ProtocolRunningLocalServicePeerNet0.0
PolicyAgent2976IPsec Policy AgentRunningNetworkServiceNetworkRestricted0.0
Power692PowerRunningDcomLaunch0.0
Power Manager DBC Service-Power Manager DBC ServiceStopped-0.0
ProtectedStorage-Protected StorageStopped-0.0
QWAVE-Quality Windows Audio Video ExperienceStopped-0.0
RasAuto-Remote Access Auto Connection ManagerStopped-0.0
RasMan-Remote Access Connection ManagerStopped-0.0
RemoteAccess-Routing and Remote AccessStopped-0.0
RemoteRegistry-Remote RegistryStopped-0.0
RpcEptMapper-RPC Endpoint MapperStopped-0.0
RpcLocator-Remote Procedure Call (RPC) LocatorStopped-0.0
RpcSs796Remote Procedure Call (RPC)RunningRPCSS0.0
SamSs-Security Accounts ManagerStopped-0.0
SCardSvr-Smart CardStopped-0.0
Schedule964Task SchedulerRunningnetsvcs0.0
SCPolicySvc-Smart Card Removal PolicyStopped-0.0
SDRSVC-Windows BackupStopped-0.0
seclogon-Secondary LogonStopped-0.0
SENS-System Event Notification ServiceStopped-0.0
SensrSvc-Adaptive BrightnessStopped-0.0
SessionEnv-Remote Desktop ConfigurationStopped-0.0
SharedAccess-Internet Connection Sharing (ICS)Stopped-0.0
SNMPTRAP-SNMP TrapStopped-0.0
Spooler1248Print SpoolerRunning-0.0
sppsvc-Software ProtectionStopped-0.0
sppuinotify-SPP Notification ServiceStopped-0.0
SSDPSRV1612SSDP DiscoveryRunningLocalServiceAndNoImpersonation0.0
SstpSvc-Secure Socket Tunneling Protocol ServiceStopped-0.0
Steam Client Service-Steam Client ServiceStopped-0.0
stisvc2484Windows Image Acquisition (WIA)Runningimgsvc0.0
swprv-Microsoft Software Shadow Copy ProviderStopped-0.0
TabletInputService-Tablet PC Input ServiceStopped-0.0
TapiSrv-TelephonyStopped-0.0
TBS-TPM Base ServicesStopped-0.0
TeamViewer6-TeamViewer 6Stopped-0.0
TermService-Remote Desktop ServicesStopped-0.0
Themes964ThemesRunningnetsvcs0.0
THREADORDER-Thread Ordering ServerStopped-0.0
TrkWks-Distributed Link Tracking ClientStopped-0.0
TrustedInstaller-Windows Modules InstallerStopped-0.0
UI0Detect-Interactive Services DetectionStopped-0.0
upnphost-UPnP Device HostStopped-0.0
UxSms936Desktop Window Manager Session ManagerRunningLocalSystemNetworkRestricted0.0
VaultSvc-Credential ManagerStopped-0.0
vds-Virtual DiskStopped-0.0
VSS-Volume Shadow CopyStopped-0.0
W32Time-Windows TimeStopped-0.0
WatAdminSvc-Windows Activation Technologies ServiceStopped-0.0
wbengine-Block Level Backup Engine ServiceStopped-0.0
WbioSrvc-Windows Biometric ServiceStopped-0.0
wcncsvc-Windows Connect Now - Config RegistrarStopped-0.0
WcsPlugInService-Windows Color SystemStopped-0.0
WdiServiceHost308Diagnostic Service HostRunningLocalService0.0
WdiSystemHost936Diagnostic System HostRunningLocalSystemNetworkRestricted0.0
WebClient-WebClientStopped-0.0
Wecsvc-Windows Event CollectorStopped-0.0
wercplsupport-Problem Reports and Solutions Control Panel SupportStopped-0.0
WerSvc-Windows Error Reporting ServiceStopped-0.0
WinHttpAutoProxySvc-WinHTTP Web Proxy Auto-Discovery ServiceStopped-0.0
Winmgmt964Windows Management InstrumentationRunningnetsvcs0.0
WinRM-Windows Remote Management (WS-Management)Stopped-0.0
Wlansvc936WLAN AutoConfigRunningLocalSystemNetworkRestricted0.0
wmiApSrv-WMI Performance AdapterStopped-0.0
WMPNetworkSvc-Windows Media Player Network Sharing ServiceStopped-0.0
WPCSvc-Parental ControlsStopped-0.0
WPDBusEnum-Portable Device Enumerator ServiceStopped-0.0
wscsvc904Security CenterRunningLocalServiceNetworkRestricted0.0
wuauserv964Windows UpdateRunningnetsvcs0.0
wudfsvc936Windows Driver Foundation - User-mode Driver FrameworkRunningLocalSystemNetworkRestricted0.0
WwanSvc-WWAN AutoConfigStopped-0.0
29.4
Services
ServicesTop: of  25 
ProcessProcess IDCPU%
ekrn.exe159226.9
Display NameService
ESET Serviceekrn
SearchIndexer.exe27560.9
Display NameService
Windows SearchWSearch
svchost.exe13760.7
Display NameService
Akamai NetSession InterfaceAkamai
svchost.exe9640.5
Display NameService
ThemesThemes
Multimedia Class SchedulerMMCSS
Extensible Authentication ProtocolEapHost
Shell Hardware DetectionShellHWDetection
ServerLanmanServer
System Event Notification ServiceSENS
Task SchedulerSchedule
IP Helperiphlpsvc
Computer BrowserBrowser
User Profile ServiceProfSvc
Windows Updatewuauserv
Windows Management InstrumentationWinmgmt
Group Policy Clientgpsvc
Background Intelligent Transfer ServiceBITS
Application ExperienceAeLookupSvc
mbamservice.exe36520.4
Display NameService
MBAMServiceMBAMService
svchost.exe6920.4
Display NameService
PowerPower
DCOM Server Process LauncherDcomLaunch
Plug and PlayPlugPlay
svchost.exe9360.2
Display NameService
Desktop Window Manager Session ManagerUxSms
Distributed Link Tracking ClientTrkWks
SuperfetchSysMain
HomeGroup ListenerHomeGroupListener
Windows Audio Endpoint BuilderAudioEndpointBuilder
Windows Driver Foundation - User-mode Driver Frameworkwudfsvc
Program Compatibility Assistant ServicePcaSvc
WLAN AutoConfigWlansvc
Network ConnectionsNetman
Diagnostic System HostWdiSystemHost
svchost.exe1920.1
Display NameService
Windows DefenderWinDefend
svchost.exe6320.1
Display NameService
Peer Name Resolution ProtocolPNRPsvc
Peer Networking Groupingp2psvc
Peer Networking Identity Managerp2pimsvc
lsass.exe5720.0
Display NameService
CNG Key IsolationKeyIso
Security Accounts ManagerSamSs
svchost.exe8800.0
Display NameService
WorkstationLanmanWorkstation
DNS ClientDnscache
Cryptographic ServicesCryptSvc
Network Location AwarenessNlaSvc
spoolsv.exe12480.0
Display NameService
Print SpoolerSpooler
svchost.exe9040.0
Display NameService
TCP/IP NetBIOS Helperlmhosts
DHCP ClientDhcp
Windows AudioAudioSrv
HomeGroup ProviderHomeGroupProvider
Security Centerwscsvc
Windows Event Logeventlog
AppleMobileDeviceService.exe15000.0
Display NameService
Apple Mobile DeviceApple Mobile Device
ibmpmsvc.exe7560.0
Display NameService
ThinkPad PM ServiceIBMPMSVC
mDNSResponder.exe15400.0
Display NameService
Bonjour ServiceBonjour Service
PnkBstrA.exe24320.0
Display NameService
PnkBstrAPnkBstrA
PresentationFontCache.exe16440.0
Display NameService
Windows Presentation Foundation Font Cache 3.0.0.0FontCache3.0.0.0
Stopped Services-0.0
Display NameService
Quality Windows Audio Video ExperienceQWAVE
Remote Access Auto Connection ManagerRasAuto
Windows CardSpaceidsvc
Routing and Remote AccessRemoteAccess
Remote Access Connection ManagerRasMan
Smart CardSCardSvr
Smart Card Removal PolicySCPolicySvc
Remote Procedure Call (RPC) LocatorRpcLocator
Disk Defragmenterdefragsvc
Remote Desktop ServicesTermService
Remote RegistryRemoteRegistry
Windows Modules InstallerTrustedInstaller
IKE and AuthIP IPsec Keying ModulesIKEEXT
Secondary Logonseclogon
Secure Socket Tunneling Protocol ServiceSstpSvc
Windows Media Center Receiver ServiceehRecvr
Remote Desktop ConfigurationSessionEnv
TelephonyTapiSrv
KtmRm for Distributed Transaction CoordinatorKtmRm
Internet Connection Sharing (ICS)SharedAccess
Microsoft .NET Framework NGEN v4.0.30319_X64clr_optimization_v4.0.30319_64
Performance Counter DLL HostPerfHost
Adaptive BrightnessSensrSvc
Portable Device Enumerator ServiceWPDBusEnum
Virtual Diskvds
Windows BackupSDRSVC
Wired AutoConfigdot3svc
Certificate PropagationCertPropSvc
Bluetooth Support Servicebthserv
Windows TimeW32Time
Windows Error Reporting ServiceWerSvc
ESET HTTP ServerEhttpSrv
ActiveX Installer (AxInstSV)AxInstSV
Steam Client ServiceSteam Client Service
Windows Media Player Network Sharing ServiceWMPNetworkSvc
Interactive Services DetectionUI0Detect
Microsoft iSCSI Initiator ServiceMSiSCSI
SPP Notification Servicesppuinotify
Software Protectionsppsvc
Block Level Backup Engine Servicewbengine
UPnP Device Hostupnphost
Application Layer Gateway ServiceALG
Health Key and Certificate Managementhkmsvc
Windows Activation Technologies ServiceWatAdminSvc
Windows Biometric ServiceWbioSrvc
SNMP TrapSNMPTRAP
TPM Base ServicesTBS
Application IdentityAppIDSvc
PnP-X IP Bus EnumeratorIPBusEnum
WMI Performance AdapterwmiApSrv
iPod ServiceiPod Service
Microsoft Software Shadow Copy Providerswprv
Parental ControlsWPCSvc
Tablet PC Input ServiceTabletInputService
Thread Ordering ServerTHREADORDER
FaxFax
Volume Shadow CopyVSS
Encrypting File System (EFS)EFS
Media Center Extender ServiceMcx2Svc
Windows Remote Management (WS-Management)WinRM
BitLocker Drive Encryption ServiceBDESVC
Distributed Transaction CoordinatorMSDTC
Windows Media Center Scheduler ServiceehSched
Windows Installermsiserver
Network Access Protection Agentnapagent
NetlogonNetlogon
Microsoft .NET Framework NGEN v2.0.50727_X86clr_optimization_v2.0.50727_32
Windows Connect Now - Config Registrarwcncsvc
nProtect GameGuard Servicenpggsvc
Application InformationAppinfo
Link-Layer Topology Discovery Mapperlltdsvc
WebClientWebClient
WWAN AutoConfigWwanSvc
Microsoft .NET Framework NGEN v4.0.30319_X86clr_optimization_v4.0.30319_32
Credential ManagerVaultSvc
Microsoft .NET Framework NGEN v2.0.50727_X64clr_optimization_v2.0.50727_64
Net.Tcp Port Sharing ServiceNetTcpPortSharing
Windows Color SystemWcsPlugInService
TeamViewer 6TeamViewer6
PNRP Machine Name Publication ServicePNRPAutoReg
COM+ System ApplicationCOMSysApp
Windows Event CollectorWecsvc
Problem Reports and Solutions Control Panel Supportwercplsupport
Power Manager DBC ServicePower Manager DBC Service
Human Interface Device Accesshidserv
Protected StorageProtectedStorage
svchost.exe12800.0
Display NameService
Windows FirewallMpsSvc
Diagnostic Policy ServiceDPS
Base Filtering EngineBFE
Performance Logs & Alertspla
svchost.exe7960.0
Display NameService
Remote Procedure Call (RPC)RpcSs
RPC Endpoint MapperRpcEptMapper
svchost.exe3080.0
Display NameService
WinHTTP Web Proxy Auto-Discovery ServiceWinHttpAutoProxySvc
Function Discovery Provider HostfdPHost
Network Store Interface Servicensi
Network List Servicenetprofm
Diagnostic Service HostWdiServiceHost
COM+ Event SystemEventSystem
svchost.exe16120.0
Display NameService
SSDP DiscoverySSDPSRV
Windows Font Cache ServiceFontCache
Function Discovery Resource PublicationFDResPub
svchost.exe29760.0
Display NameService
IPsec Policy AgentPolicyAgent
svchost.exe24840.0
Display NameService
Windows Image Acquisition (WIA)stisvc
System
SystemTop: of  15 
counterMeanMinimumMaximum
% Registry Quota In Use444
Context Switches/sec4,8292,01214,842
Exception Dispatches/sec1014
File Control Bytes/sec169,68627,718761,994
File Control Operations/sec3,63644421,990
File Data Operations/sec1,5824484,359
File Read Bytes/sec8,591,7772,053,37623,608,079
File Read Operations/sec1,1643103,344
File Write Bytes/sec11,330,3581,716,01624,912,162
File Write Operations/sec418891,015
Processes676667
Processor Queue Length0.93408
System Calls/sec34,46411,609177,112
System Up Time792762822
Threads846767887
ServerTop: of  16 
counterMeanMinimumMaximum
Bytes Received/sec000
Bytes Total/sec000
Bytes Transmitted/sec000
Context Blocks Queued/sec000
Pool Nonpaged Bytes93,92993,92993,929
Pool Paged Bytes21,82221,82221,822
Reconnected Durable Handles000
Reconnected Resilient Handles000
Server Sessions111
SMB BranchCache Hash Bytes Sent000
SMB BranchCache Hash Generation Requests000
SMB BranchCache Hash Header Requests000
SMB BranchCache Hash Requests Received000
SMB BranchCache Hash Responses Sent000
Total Durable Handles000
Total Resilient Handles000
Network
TCP
TCP Outbound Traffic
   
Top: of  25 
To MachineProcess IDPortRequests/secOutbound Bytes/Sec
74.125.93.1033848494920.184
74.125.113.1053848495480.054
74.125.113.1053848495490.152
74.125.113.1053848495470.040
74.125.113.1053848495460.039
74.125.113.1053848495500.025
74.125.95.1323848495590.024
74.125.95.1323848495560.024
74.125.95.1323848495600.024
74.125.95.1323848495580.024
74.125.95.1323848495510.024
74.125.95.1323848495570.023
74.125.95.1323848495520.023
74.125.95.1393848495440.023
174.99.53.412840493930.019
74.86.171.2103848495410.017
74.125.95.1323848495530.012
74.125.95.1323848495610.012
74.125.95.1323848495550.012
74.125.95.1323848495540.012
74.125.95.1393848495450.011
74.125.95.1393848495420.011
74.125.226.803848495640.010
74.125.226.803848495630.010
127.0.0.13848491663.53
TCP Inbound Traffic
   
Top: of  25 
From MachineProcess IDPortRequests/secInbound Bytes/Sec
74.125.113.1053848495460.81,296
74.125.93.1033848494920.71,104
74.125.113.1053848495500.2508
74.125.95.1323848495510.1206
74.125.113.1053848495490.1132
74.86.171.2103848495410.1108
74.125.113.1053848495470.1103
74.125.95.1323848495520.179
74.125.95.1323848495600.177
74.125.113.1053848495480.174
74.125.95.1323848495580.171
74.125.95.1323848495570.053
74.125.95.1323848495560.044
74.125.95.1323848495590.041
74.125.226.803848495630.030
74.125.95.1323848495550.027
74.125.226.803848495640.024
74.125.95.1323848495610.019
74.125.95.1323848495540.018
74.125.95.1323848495530.017
74.125.95.1393848495440.012
74.125.95.1393848495450.07
74.125.95.1393848495420.06
127.0.0.13848491673.53
98.139.60.1701160494850.02
TCP Version 4Top: of  9 
counterMeanMinimumMaximum
Connection Failures546
Connections Active386381405
Connections Established242039
Connections Passive888
Connections Reset186186187
Segments Received/sec120344
Segments Retransmitted/sec000
Segments Sent/sec110302
Segments/sec230646
TCP Version 6Top: of  9 
counterMeanMinimumMaximum
Connection Failures000
Connections Active000
Connections Established000
Connections Passive000
Connections Reset000
Segments Received/sec000
Segments Retransmitted/sec000
Segments Sent/sec000
Segments/sec000
Interface
Network InterfaceTop: of  27 
counterInstanceMeanMinimumMaximum
Bytes Received/secIntel[R] WiFi Link 5100 AGN000
Bytes Sent/secIntel[R] WiFi Link 5100 AGN000
Bytes Total/secIntel[R] WiFi Link 5100 AGN000
Current BandwidthIntel[R] WiFi Link 5100 AGN000
Offloaded ConnectionsIntel[R] WiFi Link 5100 AGN000
Output Queue LengthIntel[R] WiFi Link 5100 AGN000
Packets Outbound DiscardedIntel[R] WiFi Link 5100 AGN000
Packets Outbound ErrorsIntel[R] WiFi Link 5100 AGN000
Packets/secIntel[R] WiFi Link 5100 AGN000
Bytes Received/secLocal Area Connection* 113081
Bytes Sent/secLocal Area Connection* 113081
Bytes Total/secLocal Area Connection* 1150162
Current BandwidthLocal Area Connection* 11100,000100,000100,000
Offloaded ConnectionsLocal Area Connection* 11000
Output Queue LengthLocal Area Connection* 11000
Packets Outbound DiscardedLocal Area Connection* 11000
Packets Outbound ErrorsLocal Area Connection* 11000
Packets/secLocal Area Connection* 110.06702
Bytes Received/secRealtek PCIe GBE Family Controller4,7820134,675
Bytes Sent/secRealtek PCIe GBE Family Controller960024,357
Bytes Total/secRealtek PCIe GBE Family Controller5,7420159,033
Current BandwidthRealtek PCIe GBE Family Controller100,000,000100,000,000100,000,000
Offloaded ConnectionsRealtek PCIe GBE Family Controller000
Output Queue LengthRealtek PCIe GBE Family Controller000
Packets Outbound DiscardedRealtek PCIe GBE Family Controller000
Packets Outbound ErrorsRealtek PCIe GBE Family Controller000
Packets/secRealtek PCIe GBE Family Controller110233
IP
IP Version 4Top: of  17 
counterMeanMinimumMaximum
Datagrams Forwarded/sec000
Datagrams Outbound Discarded000
Datagrams Outbound No Route222
Datagrams Received Address Errors151515
Datagrams Received Delivered/sec60135
Datagrams Received Discarded185182190
Datagrams Received Header Errors000
Datagrams Received Unknown Protocol000
Datagrams Received/sec60135
Datagrams Sent/sec120304
Datagrams/sec180439
Fragment Re-assembly Failures000
Fragmentation Failures000
Fragmented Datagrams/sec000
Fragments Created/sec000
Fragments Re-assembled/sec000
Fragments Received/sec000
IP Version 6Top: of  17 
counterMeanMinimumMaximum
Datagrams Forwarded/sec000
Datagrams Outbound Discarded000
Datagrams Outbound No Route222
Datagrams Received Address Errors000
Datagrams Received Delivered/sec1.00906
Datagrams Received Discarded000
Datagrams Received Header Errors000
Datagrams Received Unknown Protocol000
Datagrams Received/sec0.03401.011
Datagrams Sent/sec1.00906
Datagrams/sec1.04306
Fragment Re-assembly Failures000
Fragmentation Failures000
Fragmented Datagrams/sec000
Fragments Created/sec000
Fragments Re-assembled/sec000
Fragments Received/sec000
UDP
UDP Version 4Top: of  5 
counterMeanMinimumMaximum
Datagrams No Port/sec0.11801.01
Datagrams Received Errors334
Datagrams Received/sec1.077015
Datagrams Sent/sec0.925018
Datagrams/sec2034
UDP Version 6Top: of  5 
counterMeanMinimumMaximum
Datagrams No Port/sec000
Datagrams Received Errors000
Datagrams Received/sec0.67305
Datagrams Sent/sec0.97606
Datagrams/sec2011
Disk
Hot Files
Files Causing Most Disk IOsTop: of  20 
DiskFileReads/secKb/ReadWrites/secKb/Write
0C:\$Mft102.2416.19
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
where.exe2556100.140.00
System40.31416.09
services.exe5120.940.00
WmiPrvSE.exe13000.340.00
svchost.exe1920.240.00
rundll32.exe35640.140.00
SearchIndexer.exe27560.000.14
ekrn.exe15920.140.00
svchost.exe6920.140.00
mbamservice.exe36520.040.00
spoolsv.exe12480.040.00
SearchFilterHost.exe48160.040.00
firefox.exe38480.040.00
SCHTASK.EXE31200.000.04
0C:\Windows\Temp\HTT4A95.tmp23.71070.00
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
System423.61070.00
ekrn.exe15920.060.00
0C:\$LogFile0.005.6101
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
System40.004.0117
firefox.exe38480.000.966
lsass.exe5720.000.243
svchost.exe9640.000.169
SearchIndexer.exe27560.000.143
rundll32.exe35640.000.157
SCHTASK.EXE31200.000.1102
svchost.exe9040.000.012
0C:\Games\Left 4 Dead 2\left4dead2\sound\player\survivor\voice\mechanic5.040.00
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
where.exe25565.040.00
0C:\Games\Left 4 Dead 2\left4dead2\sound\player\survivor\voice\coach4.840.00
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
where.exe25564.840.00
0C:\Games\Left 4 Dead 2\left4dead2\sound\player\survivor\voice\gambler4.740.00
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
where.exe25564.740.00
0C:\PerfLogs\System\Diagnostics\MR_PRYOR-PC_20110420-000002\NtKernel.etl0.1224.016
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
System40.1314.016
ekrn.exe15920.040.00
0C:\Games\Left 4 Dead 2\left4dead2\sound\player\survivor\voice\producer3.840.00
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
where.exe25563.840.00
0C:\$BitMap0.043.59
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
System40.003.59
ekrn.exe15920.040.00
0C:\Games\Left 4 Dead 2\left4dead2\scenes\mechanic3.140.04
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
where.exe25563.140.00
System40.000.04
0C:\Games\Left 4 Dead 2\left4dead2\scenes\gambler3.040.04
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
where.exe25563.040.00
System40.000.04
0C:\Games\Left 4 Dead 2\left4dead2\scenes\producer2.540.04
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
where.exe25562.540.00
System40.000.04
0C:\Windows\System32\wfp\wfpdiag.etl2.0220.116
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
System41.4310.116
ekrn.exe15920.440.00
svchost.exe12800.350.00
0C:\..\{2ca13127-6a50-11e0-8cc4-00269ebccd42}{3808876b-c176-4e48-b7ae-04046e6cc752}0.001.616
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
System40.001.516
svchost.exe9640.000.116
firefox.exe38480.000.024
svchost.exe9040.000.016
perfmon.exe36000.000.016
0C:\Games\Left 4 Dead 2\left4dead2\scenes\coach1.340.04
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
where.exe25561.340.00
System40.000.04
0C:\Windows\System32\wbem\Repository\OBJECTS.DATA1.380.08
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
svchost.exe9641.380.08
System40.080.00
0C:\Windows\System32\mshtml.tlb1.2300.00
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
perfmon.exe36001.2300.00
ekrn.exe15920.050.00
System40.01240.00
0C:\Windows\System32\wbem\Repository\INDEX.BTR1.180.08
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
svchost.exe9641.180.08
0C:\Windows\System32\mshtml.dll0.8250.00
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
perfmon.exe36000.8250.00
0C:\PerfLogs\System\Diagnostics\MR_PRYOR-PC_20110420-000002\Performance Counter.blg0.1260.658
Image NameProcess IDReads/secKb/ReadWrites/secKb/Write
rundll32.exe35640.000.658
System40.0620.00
ekrn.exe15920.040.00
Disk Breakdown
Disk TotalsTop: of  1 
Disk NumberReads/secKb/ReadWrites/secKb/Write
0204.51939.925
Image NameProcess IDAuthorityReads/secKb/ReadWrites/secKb/Write
where.exe2556\\Mr_Pryor-PC\Mr_Pryor157.240.00
System4\\NT AUTHORITY\SYSTEM28.69935.223
ekrn.exe1592\\NT AUTHORITY\SYSTEM6.540.00
svchost.exe964\\NT AUTHORITY\SYSTEM2.590.344
rundll32.exe3564\\Mr_Pryor-PC\Mr_Pryor0.4222.131
services.exe512\\NT AUTHORITY\SYSTEM2.460.00
perfmon.exe3600\\Mr_Pryor-PC\Mr_Pryor2.2270.016
firefox.exe3848\\Mr_Pryor-PC\Mr_Pryor0.2161.469
WmiPrvSE.exe1300\\NT AUTHORITY\NETWORK SERVICE1.0100.00
mbamservice.exe3652\\NT AUTHORITY\SYSTEM0.83080.00
svchost.exe192\\NT AUTHORITY\SYSTEM0.8180.00
WmiPrvSE.exe2136\\NT AUTHORITY\SYSTEM0.4260.00
svchost.exe692\\NT AUTHORITY\SYSTEM0.4180.00
SearchIndexer.exe2756\\NT AUTHORITY\SYSTEM0.1370.323
lsass.exe572\\NT AUTHORITY\SYSTEM0.000.326
svchost.exe1280\\NT AUTHORITY\LOCAL SERVICE0.350.00
spoolsv.exe1248\\NT AUTHORITY\SYSTEM0.2180.00
SearchFilterHost.exe2660\\NT AUTHORITY\SYSTEM0.2250.00
svchost.exe904\\NT AUTHORITY\LOCAL SERVICE0.0300.19
SCHTASK.EXE3120\\Mr_Pryor-PC\Mr_Pryor0.000.182
svchost.exe880\\NT AUTHORITY\NETWORK SERVICE0.0320.00
SearchFilterHost.exe4816\\NT AUTHORITY\SYSTEM0.040.00
Physical Disk
Physical Disk CountersTop: of  17 
counterInstanceMeanMinimumMaximum
% Disk Read Time_Total26369836
% Disk Time_Total30471915
% Disk Write Time_Total410.11208
Avg. Disk Bytes/Read_Total19,3495,507106,642
Avg. Disk Bytes/Transfer_Total20,4886,091105,731
Avg. Disk Bytes/Write_Total26,5697,776159,876
Avg. Disk Queue Length_Total3
   
0.7119
Avg. Disk Read Queue Length_Total30.6878
Avg. Disk Write Queue Length_Total0.4120.0012
Current Disk Queue Length_Total3011
Disk Bytes/sec_Total5,045,8102,040,52812,718,725
Disk Read Bytes/sec_Total4,013,641512,48510,534,920
Disk Reads/sec_Total207591,003
Disk Transfers/sec_Total246861,024
Disk Write Bytes/sec_Total1,032,16916,51611,190,963
Disk Writes/sec_Total391.008260
Split IO/Sec_Total2014
Physical Disk Percent Idle Time
   
Top: of  2 
InstanceMeanMinimumMaximum
0 C:7046
_Total7046
Physical Disk Average Second Counters
   
Top: of  3 
counterInstanceMeanMinimumMaximum
Avg. Disk sec/Read0 C:0.0130.0010.081
Avg. Disk sec/Transfer0 C:0.0120.0010.078
Avg. Disk sec/Write0 C:0.01100.067
NTFS Performance
Performance SettingsTop: of  2 
QueryResult
HKLM\SYSTEM\CurrentControlSet\Control\FileSystem\NtfsDisable8dot3NameCreation0x0
KeyValueTypeResult
HKLM\SYSTEM\CurrentControlSet\Control\FileSystem\NtfsDisable8dot3NameCreation240x0
HKLM\SYSTEM\CurrentControlSet\Control\FileSystem\NtfsDisableLastAccessUpdate0x0
KeyValueTypeResult
HKLM\SYSTEM\CurrentControlSet\Control\FileSystem\NtfsDisableLastAccessUpdate040x0
Memory
Process
MemoryTop: of  67 
ProcessProcess IDCommit (KB)Working Set (KB)Shareable (KB)Private (KB)
firefox3848317,588159,10427,280131,824
Skype2840421,544134,93238,94495,988
ekrn1592167,67675,4806,83668,644
svchost##3936180,64061,16413,72047,444
mbamservice3652157,20037,3405,05232,288
SearchIndexer2756266,60447,40417,78429,620
rundll32##23564127,23634,7127,62427,088
explorer1860242,95254,85631,39223,464
svchost##4964478,99242,98019,96423,016
svchost##13192153,84828,2727,92820,344
dwm1820151,88032,16012,58819,572
svchost##7128089,64424,8127,21617,596
perfmon3600204,86438,60424,08014,524
plugin-container1160143,38422,12010,39611,724
skypePM684116,89619,9448,47611,468
audiodg178458,95217,4486,29211,156
svchost##2904119,80822,24411,57610,668
WmiPrvSE1300118,72819,96010,4529,508
svchost##530868,53215,3488,6886,660
svchost##688090,59214,7688,1846,584
PresentationFontCache1644517,81218,21613,0445,172
services51252,93211,4686,4405,028
spoolsv124883,26411,5486,7764,772
svchost##8137696,46412,3447,6124,732
svchost##1263290,59613,0288,4604,568
svchost##179648,2408,0444,0483,996
lsass57246,23611,1927,4243,768
RAVCpl641424106,81210,3806,6243,756
svchost##9161262,97213,3569,6483,708
rundll32##1222899,48412,8529,2963,556
svchost69259,1649,3725,9923,380
egui114894,76010,6607,9882,672
hkcmd144496,9449,7247,1402,584
SearchFilterHost266051,0006,4964,1002,396
SearchProtocolHost328058,3488,6526,2802,372
DTLite116892,28810,1087,7642,344
winlogon56456,8086,8044,5162,288
igfxtray146867,8206,2404,1722,068
taskhost175267,0887,2845,3281,956
svchost##11297634,6965,6283,7081,920
WmiPrvSE##1213636,1805,9484,0721,876
igfxpers144075,0966,4564,6001,856
igfxsrvc317658,2765,8444,0281,816
AppleMobileDeviceService150073,3567,2125,4761,736
csrss##148070,82810,2048,4801,724
taskeng109634,3204,9123,3881,524
mDNSResponder154053,6725,4883,9881,500
igfxext314850,3125,0883,5881,500
csrss41248,2683,9482,5121,436
lsm58022,3364,1042,6881,416
svchost##10248433,1765,2683,8761,392
SCHTASK312088,9525,9924,6121,380
notepad329676,3125,5524,2361,316
conhost322064,9805,0443,7561,288
wininit46448,6484,3363,1801,156
cmd278052,7724,0322,9161,116
Windows_NT6_BSOD_v3.03_jcgriff2_114061,0684,1883,1121,076
mbamgui218067,8924,7963,7481,048
PnkBstrA243248,0484,0283,092936
rundll32214461,1483,7482,840908
jusched216067,9044,1523,280872
ibmpmsvc75641,1602,6761,812864
cmd##1202048,8683,4242,564860
where255647,2723,3922,540852
smss2725,0481,080720360
System46,0042,7362,628108
Idle0.000024024
Counters
MemoryTop: of  28 
counterMeanMinimumMaximum
% Committed Bytes In Use383739
Available Bytes576,013,497548,843,520631,390,208
Cache Bytes125,784,400119,312,384133,677,056
Cache Faults/sec2,4849154,959
Commit Limit4,011,565,0564,011,565,0564,011,565,056
Committed Bytes1,531,474,9941,478,713,3441,545,977,856
Demand Zero Faults/sec7,51089117,784
Free & Zero Page List Bytes5,135,71365,53616,162,816
Free System Page Table Entries33,557,30633,557,25333,557,311
Modified Page List Bytes32,233,10330,773,24836,163,584
Page Faults/sec10,2982,40020,374
Page Reads/sec223611,011
Page Writes/sec000
Pages Input/sec1,0181352,629
Pages Output/sec000
Pages/sec1,0181352,629
Pool Nonpaged Allocs107,575103,261119,097
Pool Nonpaged Bytes70,618,12970,479,87271,081,984
Pool Paged Allocs89,28082,047110,055
Pool Paged Bytes142,777,898139,939,840151,171,072
Pool Paged Resident Bytes141,779,280138,985,472150,163,456
Standby Cache Core Bytes000
Standby Cache Normal Priority Bytes570,880,671547,467,264628,551,680
Standby Cache Reserve Bytes6,245073,728
System Cache Resident Bytes125,782,721119,312,384133,677,056
Transition Faults/sec330323,542
Transition Pages RePurposed/sec1,22103,421
Write Copies/sec6098
Handle CountTop: of  68 
InstanceMeanMinimumMaximum
_Total17,85617,20018,234
svchost##41,3921,2211,672
Skype1,0351,0291,043
SearchIndexer874869878
lsass769756775
explorer755745760
csrss639555678
svchost##3601598603
System598597603
rundll32##2593462596
svchost##2584582586
firefox471464491
svchost##5453448455
csrss##1433431434
WmiPrvSE417301436
perfmon406402409
svchost387375390
svchost##6386383391
svchost##12359355362
svchost##1352311356
svchost##7343341345
svchost##13321314346
SearchProtocolHost318318319
spoolsv287275289
svchost##9265263265
ekrn264256272
svchost##8243242312
RAVCpl64235235235
services229225232
rundll32##1222222222
skypePM220220220
plugin-container206206206
DTLite157157157
hkcmd154154154
AppleMobileDeviceService153153153
lsm153152154
taskhost150150150
PresentationFontCache147147147
egui126126126
audiodg125123126
mbamservice124123128
WmiPrvSE##111984122
mDNSResponder117117117
dwm113113114
winlogon109109109
SearchFilterHost105105109
svchost##10102102102
SCHTASK959596
svchost##11939393
taskeng929193
igfxpers909090
wininit808080
PnkBstrA797979
igfxtray777777
igfxsrvc767676
igfxext676767
mbamgui595959
notepad585858
conhost575757
Windows_NT6_BSOD_v3.03_jcgriff2_525252
rundll32515151
jusched505050
ibmpmsvc505050
cmd504751
cmd##1313131
smss303030
where292829
Idle000
Report Statistics
Computer Information
Computer:MR_PRYOR-PC
Windows Build:7601
Processors:2
Processor Speed:1995 MHz
Memory:1913 MB
Platform:64 Bit
Files
File:C:\perflogs\System\Diagnostics\MR_PRYOR-PC_20110420-000002\NtKernel.etl
Logger Name:NT Kernel Logger
Start Time:Wednesday, April 20, 2011 1:24:17 PM
End Time:Wednesday, April 20, 2011 1:25:22 PM
File Duration:64 Seconds

File:Performance Counter.blg
Start Time:Wednesday, April 20, 2011 1:24:18 PM
End Time:Wednesday, April 20, 2011 1:25:17 PM
File Duration:59 Seconds
Processed EventsTop: of  36 
EventOpcodeTaskPayload GuidPayload IDVersionCount
DiskIoRead0{3d6fa8d4-fe05-11d0-9dda-00c04fd7ba7c}10212472
FileIoFileCreate0{90cbdc39-4a3e-11d1-84f4-0000f80464e3}3228217
FileIoFileDelete0{90cbdc39-4a3e-11d1-84f4-0000f80464e3}3526305
FileIoFileRundown0{90cbdc39-4a3e-11d1-84f4-0000f80464e3}3625423
DiskIoWrite0{3d6fa8d4-fe05-11d0-9dda-00c04fd7ba7c}1122431
ThreadDCEnd0{3d6fa8d1-fe05-11d0-9dda-00c04fd7ba7c}43835
ThreadDCStart0{3d6fa8d1-fe05-11d0-9dda-00c04fd7ba7c}33767
TcpIpTCPCopyIPV40{9a280ac0-c8e0-11d1-84e2-00c04fb998a2}182434
TcpIpRecvIPV40{9a280ac0-c8e0-11d1-84e2-00c04fb998a2}112393
ThreadStart0{3d6fa8d1-fe05-11d0-9dda-00c04fd7ba7c}13335
TcpIpSendIPV40{9a280ac0-c8e0-11d1-84e2-00c04fb998a2}102269
ThreadEnd0{3d6fa8d1-fe05-11d0-9dda-00c04fd7ba7c}23268
SystemConfigServices0{01853a65-418f-4f36-aefc-dc0f1d2fd235}153157
SystemConfigPnP0{01853a65-418f-4f36-aefc-dc0f1d2fd235}223153
UdpIpRecvIPV60{bf3a50c5-a9c9-4988-a005-2df0b7c80f80}272117
ProcessDCEnd0{3d6fa8d0-fe05-11d0-9dda-00c04fd7ba7c}4367
DiskIoFlushBuffers0{3d6fa8d4-fe05-11d0-9dda-00c04fd7ba7c}14267
ProcessDCStart0{3d6fa8d0-fe05-11d0-9dda-00c04fd7ba7c}3366
UdpIpRecvIPV40{bf3a50c5-a9c9-4988-a005-2df0b7c80f80}11264
UdpIpSendIPV40{bf3a50c5-a9c9-4988-a005-2df0b7c80f80}10255
SystemConfigIRQ0{01853a65-418f-4f36-aefc-dc0f1d2fd235}21331
TcpIpConnectIPV40{9a280ac0-c8e0-11d1-84e2-00c04fb998a2}12223
TcpIpDisconnectIPV40{9a280ac0-c8e0-11d1-84e2-00c04fb998a2}1328
SystemConfigNIC0{01853a65-418f-4f36-aefc-dc0f1d2fd235}1326
EventTraceExtension0{68fdd900-4a3e-11d1-84f4-0000f80464e3}523
SystemConfigIDEChannel0{01853a65-418f-4f36-aefc-dc0f1d2fd235}2322
SystemConfigVideo0{01853a65-418f-4f36-aefc-dc0f1d2fd235}1422
ProcessStart0{3d6fa8d0-fe05-11d0-9dda-00c04fd7ba7c}132
SystemConfigPlatform0{01853a65-418f-4f36-aefc-dc0f1d2fd235}2521
SystemConfigPower0{01853a65-418f-4f36-aefc-dc0f1d2fd235}1621
SystemConfigLogDisk0{01853a65-418f-4f36-aefc-dc0f1d2fd235}1221
SystemConfigPhyDisk0{01853a65-418f-4f36-aefc-dc0f1d2fd235}1121
SystemConfigCPU0{01853a65-418f-4f36-aefc-dc0f1d2fd235}1021
SystemConfigNetwork0{01853a65-418f-4f36-aefc-dc0f1d2fd235}1721
EventTraceHeader0{68fdd900-4a3e-11d1-84f4-0000f80464e3}021
ProcessEnd0{3d6fa8d0-fe05-11d0-9dda-00c04fd7ba7c}231
38980
x