Spam disconnect at start of game

when match begins it disconnects over and over and over, cleras up after like a minute if I’m lucky. Makes early game unplayable.

Game is on D dedicated SSD, internet connection is stable (not affecting anything else, including game lobby)

Operating System
Windows 10 Home 64-bit
CPU
Intel Core i9 @ 3.60GHz 54 °C
Kaby Lake 14nm Technology
RAM
32.0GB
Motherboard
Micro-Star International Co. Ltd. Z370I C2018 (MS-7B43) (U3E1) 103 °C
Graphics
SUW49C (3840x1080@60Hz)
HP Pavilion32 (2560x1440@59Hz)
3071MB NVIDIA GeForce RTX 2080 Ti (MSI) 40 °C
Storage
1863GB Seagate ST2000LM015-2E8174 (SATA ) 43 °C
476GB SAMSUNG MZVLW512HMJP-00000 (Unknown (SSD))

Hey Sarnen,

Repeat disconnections at the start of the match like this sounds like it may be due to some background software interfering with the game client or the connection. If you are using a wifi connection try switching to wired as well and see if that helps.

Lets take a look at what is running to see if there is anything known to conflict with Heroes of the Storm.

  1. Press Windows Key + R to open the Run dialogue
  2. Type msinfo32 and press Enter.
  3. Expand the Software Environment section by clicking the + sign and then click on Running Tasks.
  4. Press Ctrl + A to select all then press Ctrl + C to copy everything.
  5. In the posting section at the bottom of this thread click the </> button (Code), the blinking cursor should be between the two code tags.
  6. Press Ctrl+V to paste everything and submit the reply.
  7. Repeat the above steps again for the Services section also under Software Environment, then post that as a separate reply.

“sorry, you can’t include links in your post.”
brilliant.

Before pasting everything in, hit the </> button in the posting section and then paste the results (so it indents everything by 4 spaces). That should allow links (although I’m not sure why web links would be in your running tasks or services).

|csrss.exe|Not Available|924|13|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|---|---|---|---|---|---|---|---|---|---|
|wininit.exe|Not Available|1016|13|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|csrss.exe|Not Available|132|13|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|winlogon.exe|Not Available|1340|13|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|dwm.exe|Not Available|1460|13|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|ctfmon.exe|Not Available|4860|13|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|esrv.exe|c:\program files\intel\sur\queencreek\x64\esrv.exe|6308|13|200|1380|1/10/2020 1:51|2.4.0.4755|792.30 KB (811,320 bytes)|8/16/2019 14:29|
|esrv_svc.exe|Not Available|24804|13|Not Available|Not Available|1/10/2020 21:32|Not Available|Not Available|Not Available|
|smss.exe|Not Available|684|11|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|services.exe|Not Available|384|9|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|lsass.exe|Not Available|536|9|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|system|Not Available|4|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|registry|Not Available|168|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|1068|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|1096|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|fontdrvhost.exe|Not Available|1120|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|wudfhost.exe|Not Available|1128|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|1216|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|1268|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|fontdrvhost.exe|Not Available|1392|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|1540|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|1548|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|1556|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|1580|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|1784|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|1808|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|1816|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|1824|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|1944|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|2028|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|2036|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|1388|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|bdservicehost.exe|Not Available|2096|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|2140|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|2232|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|2316|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|2356|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|2404|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|2508|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|dashost.exe|Not Available|2524|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|2544|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|2600|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|nvdisplay.container.exe|Not Available|2620|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|2648|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|bdservicehost.exe|Not Available|2728|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|devmgmtservice.exe|Not Available|2740|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|2904|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|2924|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|1688|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|memory compression|Not Available|3144|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|3188|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|3276|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|3396|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|3404|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|nvdisplay.container.exe|Not Available|3700|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|3816|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|3932|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|4020|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|unsecapp.exe|Not Available|4064|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|wmiprvse.exe|Not Available|4196|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|sihost.exe|c:\windows\system32\sihost.exe|4304|8|200|1380|1/10/2020 1:47|10.0.18362.1|104.00 KB (106,496 bytes)|3/18/2019 20:44|
|svchost.exe|c:\windows\system32\svchost.exe|4372|8|200|1380|1/10/2020 1:47|10.0.18362.1|52.48 KB (53,744 bytes)|3/18/2019 20:44|
|svchost.exe|c:\windows\system32\svchost.exe|4384|8|200|1380|1/10/2020 1:47|10.0.18362.1|52.48 KB (53,744 bytes)|3/18/2019 20:44|
|wmiprvse.exe|Not Available|4412|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|c:\windows\system32\svchost.exe|4480|8|200|1380|1/10/2020 1:47|10.0.18362.1|52.48 KB (53,744 bytes)|3/18/2019 20:44|
|svchost.exe|Not Available|4664|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|4804|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|4436|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|taskhostw.exe|c:\windows\system32\taskhostw.exe|4692|8|200|1380|1/10/2020 1:47|10.0.18362.387|90.45 KB (92,624 bytes)|10/7/2019 12:57|
|svchost.exe|Not Available|5196|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|5356|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|5364|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|5544|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|5724|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|explorer.exe|c:\windows\explorer.exe|5744|8|200|1380|1/10/2020 1:47|10.0.18362.449|4.40 MB (4,615,616 bytes)|11/12/2019 13:15|
|svchost.exe|Not Available|5916|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|6008|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|6036|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|rundll32.exe|c:\windows\system32\rundll32.exe|6100|8|200|1380|1/10/2020 1:47|10.0.18362.1|69.50 KB (71,168 bytes)|3/18/2019 20:45|
|wlanext.exe|Not Available|6256|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|conhost.exe|Not Available|6284|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|dashost.exe|Not Available|6472|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|6636|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|dsaservice.exe|Not Available|6648|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|corsair.service.exe|Not Available|6664|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|fastbootservice.exe|Not Available|6688|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|bdservicehost.exe|Not Available|6700|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|iprosetmonitor.exe|Not Available|6708|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|pnkbstra.exe|Not Available|6716|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|ibtsiva.exe|Not Available|6724|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|6736|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|evteng.exe|Not Available|6744|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|regsrvc.exe|Not Available|6760|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|gamemanagerservice.exe|Not Available|6768|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|servicehub.power.exe|Not Available|6796|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|razercentralservice.exe|Not Available|6804|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|6832|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|productagentservice.exe|Not Available|6872|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|6884|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|msi_liveupdate_service.exe|Not Available|6892|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|rzklservice.exe|Not Available|6912|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|updatesrv.exe|Not Available|6920|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|zeroconfigservice.exe|Not Available|6936|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|nvcontainer.exe|Not Available|6952|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|officeclicktorun.exe|Not Available|7048|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|7644|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|c:\windows\system32\svchost.exe|7996|8|200|1380|1/10/2020 1:47|10.0.18362.1|52.48 KB (53,744 bytes)|3/18/2019 20:44|
|svchost.exe|Not Available|9052|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|9176|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|rundll32.exe|Not Available|9200|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|rundll32.exe|Not Available|9532|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|startmenuexperiencehost.exe|c:\windows\systemapps\microsoft.windows.startmenuexperiencehost_cw5n1h2txyewy\startmenuexperiencehost.exe|9732|8|200|1380|1/10/2020 1:47|Not Available|922.02 KB (944,144 bytes)|9/12/2019 0:35|
|discoverysrv.exe|Not Available|9884|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|10044|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|runtimebroker.exe|c:\windows\system32\runtimebroker.exe|5892|8|200|1380|1/10/2020 1:47|10.0.18362.1|94.31 KB (96,576 bytes)|3/18/2019 20:44|
|corsair.service.cpuidremote64.exe|Not Available|10608|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|conhost.exe|Not Available|10616|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|nvcontainer.exe|c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe|10700|8|200|1380|1/10/2020 1:47|1.19.2734.4859|838.36 KB (858,480 bytes)|2/18/2019 10:14|
|razer synapse service.exe|Not Available|10720|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|corsair.service.displayadapter.exe|Not Available|10728|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|conhost.exe|Not Available|10764|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|11040|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|searchui.exe|c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\searchui.exe|9912|8|200|1380|1/10/2020 1:47|10.0.18362.418|10.74 MB (11,266,872 bytes)|10/8/2019 17:34|
|runtimebroker.exe|c:\windows\system32\runtimebroker.exe|11684|8|200|1380|1/10/2020 1:47|10.0.18362.1|94.31 KB (96,576 bytes)|3/18/2019 20:44|
|skypebackgroundhost.exe|c:\program files\windowsapps\microsoft.skypeapp_14.55.131.0_x64__kzf8qxf38zg5c\skypebackgroundhost.exe|12068|8|200|1380|1/10/2020 1:47|8.55.0.131|178.00 KB (182,272 bytes)|12/12/2019 18:19|
|skypeapp.exe|c:\program files\windowsapps\microsoft.skypeapp_14.55.131.0_x64__kzf8qxf38zg5c\skypeapp.exe|12096|8|250136|251316|1/10/2020 1:47|8.55.0.131|21.00 KB (21,504 bytes)|12/12/2019 18:19|
|yourphone.exe|c:\program files\windowsapps\microsoft.yourphone_1.19112.115.0_x64__8wekyb3d8bbwe\yourphone.exe|12156|8|200|1380|1/10/2020 1:47|1.19112.115.0|14.71 MB (15,419,904 bytes)|1/9/2020 23:43|
|svchost.exe|Not Available|12500|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|cold turkey blocker.exe|c:\program files\cold turkey\cold turkey blocker.exe|12616|8|200|1380|1/10/2020 1:47|3.10.0.0|814.49 KB (834,040 bytes)|8/5/2019 18:14|
|lockapp.exe|c:\windows\systemapps\microsoft.lockapp_cw5n1h2txyewy\lockapp.exe|5308|8|200|1380|1/10/2020 1:47|10.0.18362.329|3.45 MB (3,620,880 bytes)|9/12/2019 0:35|
|svchost.exe|Not Available|13304|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|runtimebroker.exe|c:\windows\system32\runtimebroker.exe|12784|8|200|1380|1/10/2020 1:47|10.0.18362.1|94.31 KB (96,576 bytes)|3/18/2019 20:44|
|dsaupdateservice.exe|Not Available|14244|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|eowp.exe|c:\program files\cold turkey\eowp.exe|15036|8|200|1380|1/10/2020 1:47|18.1.7.0|447.70 KB (458,448 bytes)|8/5/2019 18:14|
|conhost.exe|c:\windows\system32\conhost.exe|15088|8|200|1380|1/10/2020 1:47|10.0.18362.1|865.00 KB (885,760 bytes)|3/18/2019 20:44|
|eowp.exe|c:\program files\cold turkey\eowp.exe|15164|8|200|1380|1/10/2020 1:47|18.1.7.0|447.70 KB (458,448 bytes)|8/5/2019 18:14|
|conhost.exe|c:\windows\system32\conhost.exe|15216|8|200|1380|1/10/2020 1:47|10.0.18362.1|865.00 KB (885,760 bytes)|3/18/2019 20:44|
|svchost.exe|Not Available|15080|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|eowp.exe|c:\program files\cold turkey\eowp.exe|15092|8|200|1380|1/10/2020 1:47|18.1.7.0|447.70 KB (458,448 bytes)|8/5/2019 18:14|
|eowp.exe|c:\program files\cold turkey\eowp.exe|15376|8|200|1380|1/10/2020 1:47|18.1.7.0|447.70 KB (458,448 bytes)|8/5/2019 18:14|
|runtimebroker.exe|c:\windows\system32\runtimebroker.exe|15724|8|200|1380|1/10/2020 1:47|10.0.18362.1|94.31 KB (96,576 bytes)|3/18/2019 20:44|
|runtimebroker.exe|c:\windows\system32\runtimebroker.exe|15844|8|200|1380|1/10/2020 1:47|10.0.18362.1|94.31 KB (96,576 bytes)|3/18/2019 20:44|
|razer synapse service process.exe|c:\program files (x86)\razer\synapse3\service\..\userprocess\razer synapse service process.exe|15984|8|200|1380|1/10/2020 1:47|1.0.0.0|335.73 KB (343,792 bytes)|11/18/2019 22:26|
|runtimebroker.exe|c:\windows\system32\runtimebroker.exe|15116|8|200|1380|1/10/2020 1:47|10.0.18362.1|94.31 KB (96,576 bytes)|3/18/2019 20:44|
|dllhost.exe|Not Available|15748|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|securityhealthsystray.exe|c:\windows\system32\securityhealthsystray.exe|17312|8|200|1380|1/10/2020 1:47|10.0.18362.1|83.00 KB (84,992 bytes)|3/18/2019 20:44|
|securityhealthservice.exe|Not Available|17352|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|rtkngui64.exe|c:\program files\realtek\audio\hda\rtkngui64.exe|16200|8|200|1380|1/10/2020 1:47|1.0.693.0|8.84 MB (9,269,120 bytes)|2/18/2019 10:18|
|careueyes.exe|c:\users\parat\appdata\roaming\careueyes\careueyes.exe|12312|8|200|1380|1/10/2020 1:47|2017.7.28.1|1.14 MB (1,196,032 bytes)|7/19/2019 20:06|
|razer synapse 3.exe|c:\program files (x86)\razer\synapse3\wpfui\framework\razer synapse 3 host\razer synapse 3.exe|5768|8|200|1380|1/10/2020 1:47|3.1.627.5|3.35 MB (3,508,464 bytes)|11/18/2019 22:58|
|razer central.exe|c:\program files (x86)\razer\razer services\razer central\razer central.exe|17060|8|200|1380|1/10/2020 1:47|7.3.23.124|6.94 MB (7,275,368 bytes)|10/28/2019 11:44|
|cefsharp.browsersubprocess.exe|c:\program files (x86)\razer\razer services\razer central\cefsharp.browsersubprocess.exe|17300|8|200|1380|1/10/2020 1:47|67.0.0.0|16.87 KB (17,272 bytes)|10/28/2019 11:43|
|icue.exe|c:\program files (x86)\corsair\corsair icue software\icue.exe|14972|8|200|1380|1/10/2020 1:47|3.12.118.0|43.07 MB (45,159,976 bytes)|1/29/2019 10:10|
|fastboot.exe|c:\program files (x86)\msi\fast boot\fastboot.exe|10748|8|200|1380|1/10/2020 1:47|1.0.1.15|1.86 MB (1,953,464 bytes)|7/19/2019 18:42|
|rzsynapse.exe|c:\program files (x86)\razer\synapse\rzsynapse.exe|17192|8|200|1380|1/10/2020 1:47|2.21.24.1|587.68 KB (601,784 bytes)|7/17/2019 11:42|
|cefsharp.browsersubprocess.exe|c:\program files (x86)\razer\razer services\razer central\cefsharp.browsersubprocess.exe|11816|8|200|1380|1/10/2020 1:47|67.0.0.0|16.87 KB (17,272 bytes)|10/28/2019 11:43|
|razercortex.exe|Not Available|17704|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|cefsharp.browsersubprocess.exe|Not Available|17972|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|pmrunner32.exe|Not Available|18392|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|pmrunner64.exe|Not Available|18404|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|fpsrunner32.exe|Not Available|16796|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|fpsrunner64.exe|Not Available|17888|8|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|dllhost.exe|c:\windows\system32\dllhost.exe|9540|8|200|1380|1/10/2020 1:47|10.0.18362.1|20.80 KB (21,304 bytes)|3/18/2019 20:44|
|adobenotificationclient.exe|c:\program files\windowsapps\adobenotificationclient_1.0.1.22_x86__enpm4xejd91yc\adobenotificationclient.exe|17984|8|200|1380|1/10/2020 1:48|4.9.0.484|484.05 KB (495,672 bytes)|1/3/2020 18:28|
|runtimebroker.exe|c:\windows\system32\runtimebroker.exe|4884|8|200|1380|1/10/2020 1:48|10.0.18362.1|94.31 KB (96,576 bytes)|3/18/2019 20:44|
|svchost.exe|Not Available|18700|8|Not Available|Not Available|1/10/2020 1:48|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|18944|8|Not Available|Not Available|1/10/2020 1:48|Not Available|Not Available|Not Available|
|svchost.exe|c:\windows\system32\svchost.exe|18992|8|200|1380|1/10/2020 1:48|10.0.18362.1|52.48 KB (53,744 bytes)|3/18/2019 20:44|
|bdredline.exe|Not Available|16300|8|Not Available|Not Available|1/10/2020 1:49|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|10880|8|Not Available|Not Available|1/10/2020 1:49|Not Available|Not Available|Not Available|
|jhi_service.exe|Not Available|12644|8|Not Available|Not Available|1/10/2020 1:49|Not Available|Not Available|Not Available|
|lms.exe|Not Available|7120|8|Not Available|Not Available|1/10/2020 1:49|Not Available|Not Available|Not Available|
|sgrmbroker.exe|Not Available|12424|8|Not Available|Not Available|1/10/2020 1:49|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|14184|8|Not Available|Not Available|1/10/2020 1:49|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|7620|8|Not Available|Not Available|1/10/2020 1:49|Not Available|Not Available|Not Available|
|conhost.exe|Not Available|20444|8|Not Available|Not Available|1/10/2020 1:51|Not Available|Not Available|Not Available|
|windowsinternal.composableshell.experiences.textinput.inputapp.exe|c:\windows\systemapps\inputapp_cw5n1h2txyewy\windowsinternal.composableshell.experiences.textinput.inputapp.exe|16884|8|200|1380|1/10/2020 1:51|10.0.18362.329|1.02 MB (1,070,080 bytes)|9/12/2019 0:35|
|systemsettings.exe|c:\windows\immersivecontrolpanel\systemsettings.exe|5208|8|200|1380|1/10/2020 2:48|10.0.18362.449|93.78 KB (96,032 bytes)|11/12/2019 13:18|
|applicationframehost.exe|c:\windows\system32\applicationframehost.exe|13292|8|200|1380|1/10/2020 2:48|10.0.18362.1|71.27 KB (72,984 bytes)|3/18/2019 20:44|
|svchost.exe|Not Available|21548|8|Not Available|Not Available|1/10/2020 3:14|Not Available|Not Available|Not Available|
|rundll32.exe|Not Available|12852|8|Not Available|Not Available|1/10/2020 7:47|Not Available|Not Available|Not Available|
|shellexperiencehost.exe|c:\windows\systemapps\shellexperiencehost_cw5n1h2txyewy\shellexperiencehost.exe|7428|8|200|1380|1/10/2020 17:58|10.0.18362.387|2.27 MB (2,378,040 bytes)|10/7/2019 12:57|
|runtimebroker.exe|c:\windows\system32\runtimebroker.exe|17068|8|200|1380|1/10/2020 17:58|10.0.18362.1|94.31 KB (96,576 bytes)|3/18/2019 20:44|
|rundll32.exe|Not Available|3748|8|Not Available|Not Available|1/10/2020 19:47|Not Available|Not Available|Not Available|
|rundll32.exe|Not Available|17772|8|Not Available|Not Available|1/11/2020 1:47|Not Available|Not Available|Not Available|
|rundll32.exe|Not Available|5036|8|Not Available|Not Available|1/11/2020 7:47|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|26420|8|Not Available|Not Available|1/11/2020 9:43|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|17580|8|Not Available|Not Available|1/11/2020 9:49|Not Available|Not Available|Not Available|
|smartscreen.exe|c:\windows\system32\smartscreen.exe|27448|8|200|1380|1/11/2020 9:50|10.0.18362.1|2.63 MB (2,759,680 bytes)|3/18/2019 20:44|
|battle.net.exe|d:\games\battle.net\battle.net.exe|4816|8|200|1380|1/11/2020 9:50|1.18.1.11740|1.06 MB (1,109,152 bytes)|12/17/2019 10:26|
|agent.exe|c:\programdata\battle.net\agent\agent.6926\agent.exe|16924|8|200|1380|1/11/2020 9:50|2.19.3.6926|4.95 MB (5,193,888 bytes)|1/9/2020 19:46|
|conhost.exe|c:\windows\system32\conhost.exe|23140|8|200|1380|1/11/2020 9:50|10.0.18362.1|865.00 KB (885,760 bytes)|3/18/2019 20:44|
|battle.net.exe|d:\games\battle.net\battle.net.exe|22620|8|200|1380|1/11/2020 9:50|1.18.1.11740|1.06 MB (1,109,152 bytes)|12/17/2019 10:26|
|battle.net.exe|d:\games\battle.net\battle.net.exe|7868|8|200|1380|1/11/2020 9:50|1.18.1.11740|1.06 MB (1,109,152 bytes)|12/17/2019 10:26|
|battle.net.exe|d:\games\battle.net\battle.net.exe|5040|8|200|1380|1/11/2020 9:50|1.18.1.11740|1.06 MB (1,109,152 bytes)|12/17/2019 10:26|
|heroesofthestorm_x64.exe|d:\games\heroes of the storm\versions\base77692\heroesofthestorm_x64.exe|20516|8|200|1380|1/11/2020 9:52|2.49.1.12156|49.93 MB (52,355,232 bytes)|12/17/2019 10:26|
|processcapturer.exe|c:\program files (x86)\razer\razer cortex\processcapturer.exe|25060|8|200|1380|1/11/2020 9:52|1.4.1.3|294.66 KB (301,728 bytes)|8/31/2019 19:05|
|conhost.exe|c:\windows\system32\conhost.exe|4420|8|200|1380|1/11/2020 9:52|10.0.18362.1|865.00 KB (885,760 bytes)|3/18/2019 20:44|
|svchost.exe|Not Available|20732|8|Not Available|Not Available|1/11/2020 9:52|Not Available|Not Available|Not Available|
|gamebarpresencewriter.exe|c:\windows\system32\gamebarpresencewriter.exe|20956|8|200|1380|1/11/2020 9:52|10.0.18362.1|300.00 KB (307,200 bytes)|3/18/2019 20:45|
|svchost.exe|Not Available|25804|8|Not Available|Not Available|1/11/2020 9:52|Not Available|Not Available|Not Available|
|svchost.exe|c:\windows\system32\svchost.exe|8396|8|200|1380|1/11/2020 9:52|10.0.18362.1|52.48 KB (53,744 bytes)|3/18/2019 20:44|
|searchindexer.exe|Not Available|8028|8|Not Available|Not Available|1/11/2020 9:52|Not Available|Not Available|Not Available|
|audiodg.exe|Not Available|15740|8|Not Available|Not Available|1/11/2020 9:52|Not Available|Not Available|Not Available|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|25760|8|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|svchost.exe|Not Available|17392|8|Not Available|Not Available|1/11/2020 9:52|Not Available|Not Available|Not Available|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|24360|8|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|26720|8|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|23616|8|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|5044|8|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|wmiprvse.exe|Not Available|6416|8|Not Available|Not Available|1/11/2020 9:52|Not Available|Not Available|Not Available|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|12808|8|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|10132|8|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|9880|8|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|12612|8|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|17540|8|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|cmd.exe|c:\windows\syswow64\cmd.exe|9320|8|200|1380|1/11/2020 9:52|10.0.18362.449|230.50 KB (236,032 bytes)|11/12/2019 13:17|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|6212|8|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|conhost.exe|c:\windows\system32\conhost.exe|9096|8|200|1380|1/11/2020 9:52|10.0.18362.1|865.00 KB (885,760 bytes)|3/18/2019 20:44|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|19516|8|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|8928|8|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|bdwtxcr.exe|c:\program files\bitdefender\bitdefender security\bdwtxcr.exe|19808|8|200|1380|1/11/2020 9:52|24.0.14.74|381.44 KB (390,592 bytes)|7/19/2019 19:03|
|cmd.exe|c:\windows\syswow64\cmd.exe|19640|8|200|1380|1/11/2020 9:52|10.0.18362.449|230.50 KB (236,032 bytes)|11/12/2019 13:17|
|cmd.exe|c:\windows\syswow64\cmd.exe|800|8|200|1380|1/11/2020 9:52|10.0.18362.449|230.50 KB (236,032 bytes)|11/12/2019 13:17|
|conhost.exe|c:\windows\system32\conhost.exe|9084|8|200|1380|1/11/2020 9:52|10.0.18362.1|865.00 KB (885,760 bytes)|3/18/2019 20:44|
|conhost.exe|c:\windows\system32\conhost.exe|18676|8|200|1380|1/11/2020 9:52|10.0.18362.1|865.00 KB (885,760 bytes)|3/18/2019 20:44|
|bdtrackersnmh.exe|c:\program files\bitdefender\bitdefender security\bdtrackersnmh.exe|8472|8|200|1380|1/11/2020 9:52|24.0.14.74|510.88 KB (523,136 bytes)|7/19/2019 19:03|
|ctmsghostchrome.exe|c:\program files\cold turkey\ctmsghostchrome.exe|7568|8|200|1380|1/11/2020 9:52|1.0.0.0|21.70 KB (22,216 bytes)|8/5/2019 18:14|
|svchost.exe|Not Available|12956|8|Not Available|Not Available|1/11/2020 9:53|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|24088|8|Not Available|Not Available|1/11/2020 9:53|Not Available|Not Available|Not Available|
|svchost.exe|Not Available|25624|8|Not Available|Not Available|1/11/2020 9:53|Not Available|Not Available|Not Available|
|runtimebroker.exe|c:\windows\system32\runtimebroker.exe|18472|8|200|1380|1/11/2020 9:56|10.0.18362.1|94.31 KB (96,576 bytes)|3/18/2019 20:44|
|svchost.exe|Not Available|26268|8|Not Available|Not Available|1/11/2020 9:56|Not Available|Not Available|Not Available|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|13416|8|200|1380|1/11/2020 9:56|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|msinfo32.exe|c:\windows\system32\msinfo32.exe|24160|8|200|1380|1/11/2020 9:57|10.0.18362.1|360.50 KB (369,152 bytes)|3/18/2019 20:45|
|sursvc.exe|Not Available|6840|6|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|settingsynchost.exe|c:\windows\system32\settingsynchost.exe|12188|6|200|1380|1/10/2020 1:47|10.0.18362.239|907.01 KB (928,776 bytes)|8/25/2019 22:29|
|nvidia web helper.exe|c:\program files (x86)\nvidia corporation\nvnode\nvidia web helper.exe|12492|6|200|1380|1/10/2020 1:47|11.13.0.0|28.40 MB (29,784,696 bytes)|2/18/2019 10:14|
|conhost.exe|c:\windows\system32\conhost.exe|12592|6|200|1380|1/10/2020 1:47|10.0.18362.1|865.00 KB (885,760 bytes)|3/18/2019 20:44|
|bdagent.exe|c:\program files\bitdefender\bitdefender security\bdagent.exe|18912|6|200|1380|1/10/2020 1:48|24.0.14.74|512.81 KB (525,120 bytes)|10/20/2019 17:19|
|onedrive.exe|c:\users\parat\appdata\local\microsoft\onedrive\onedrive.exe|5448|6|200|1380|1/10/2020 1:53|19.192.926.12|1.51 MB (1,585,000 bytes)|7/19/2019 18:30|
|live update.exe|Not Available|13196|6|Not Available|Not Available|1/10/2020 1:53|Not Available|Not Available|Not Available|
|bdwtxag.exe|c:\program files\bitdefender\bitdefender security\bdwtxag.exe|6304|6|200|1380|1/11/2020 9:52|24.0.14.74|1.98 MB (2,076,904 bytes)|7/19/2019 19:03|
|originwebhelperservice.exe|Not Available|16176|4|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|8776|4|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|4580|4|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|8476|4|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|16248|4|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|17536|4|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|14448|4|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|15072|4|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|18388|4|200|1380|1/11/2020 9:52|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|chrome.exe|c:\program files (x86)\srware iron\chrome.exe|25076|4|200|1380|1/11/2020 9:56|74.0.3850.0|1.66 MB (1,737,352 bytes)|7/19/2019 18:49|
|system idle process|Not Available|0|0|Not Available|Not Available|1/10/2020 1:47|Not Available|Not Available|Not Available|

|AarSvc_2d321|AarSvc_2d321|Stopped|Manual|Unknown|c:\windows\system32\svchost.exe -k aarsvcgroup -p|Normal|Not Available|0|
|---|---|---|---|---|---|---|---|---|
|ActiveX Installer (AxInstSV)|AxInstSV|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k axinstsvgroup|Normal|LocalSystem|0|
|Adobe Acrobat Update Service|AdobeARMservice|Stopped|Auto|Own Process|"c:\program files (x86)\common files\adobe\arm\1.0\armsvc.exe"|Ignore|LocalSystem|0|
|Adobe Genuine Monitor Service|AGMService|Stopped|Auto|Own Process|"c:\program files (x86)\common files\adobe\adobegcclient\agmservice.exe"|Normal|LocalSystem|0|
|Adobe Genuine Software Integrity Service|AGSService|Stopped|Auto|Own Process|"c:\program files (x86)\common files\adobe\adobegcclient\agsservice.exe"|Normal|LocalSystem|0|
|AdobeUpdateService|AdobeUpdateService|Stopped|Auto|Own Process|"c:\program files (x86)\common files\adobe\adobe desktop common\elevationmanager\adobeupdateservice.exe"|Normal|LocalSystem|0|
|AllJoyn Router Service|AJRouter|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT AUTHORITY\LocalService|0|
|App Readiness|AppReadiness|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k appreadiness -p|Normal|LocalSystem|0|
|Application Identity|AppIDSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT Authority\LocalService|0|
|Application Information|Appinfo|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Application Layer Gateway Service|ALG|Stopped|Manual|Own Process|c:\windows\system32\alg.exe|Normal|NT AUTHORITY\LocalService|0|
|AppX Deployment Service (AppXSVC)|AppXSvc|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k wsappx -p|Normal|LocalSystem|0|
|Auto Time Zone Updater|tzautoupdate|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT AUTHORITY\LocalService|0|
|AVCTP service|BthAvctpSvc|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT AUTHORITY\LocalService|0|
|Background Intelligent Transfer Service|BITS|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Background Tasks Infrastructure Service|BrokerInfrastructure|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k dcomlaunch -p|Normal|LocalSystem|0|
|Base Filtering Engine|BFE|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k localservicenonetworkfirewall -p|Normal|NT AUTHORITY\LocalService|0|
|BcastDVRUserService_2d321|BcastDVRUserService_2d321|Stopped|Manual|Unknown|c:\windows\system32\svchost.exe -k bcastdvruserservice|Normal|Not Available|0|
|Bitdefender Auxiliary Service|BDAuxSrv|Running|Auto|Own Process|"c:\program files\bitdefender\bitdefender security\bdservicehost.exe" "settings/services/configs/bdauxsrv_config.json"|Normal|LocalSystem|0|
|Bitdefender Desktop Update Service|UPDATESRV|Running|Auto|Own Process|"c:\program files\bitdefender\bitdefender security\updatesrv.exe" /service|Normal|LocalSystem|0|
|Bitdefender Device Management Service|DevMgmtService|Running|Auto|Own Process|"c:\program files\bitdefender\bitdefender device management\devmgmtservice.exe"|Normal|LocalSystem|0|
|Bitdefender Product Agent Service|ProductAgentService|Running|Auto|Own Process|"c:\program files\bitdefender agent\productagentservice.exe"|Normal|LocalSystem|0|
|Bitdefender Protected Service|BDProtSrv|Running|Auto|Own Process|"c:\program files\bitdefender\bitdefender security\bdservicehost.exe" "settings\services\configs\bdprotsrv_config.json"|Normal|LocalSystem|0|
|Bitdefender RedLine Service|bdredline|Running|Auto|Own Process|"c:\program files\common files\bitdefender\setupinformation\bitdefender redline\bdredline.exe"|Normal|LocalSystem|0|
|Bitdefender Virus Shield|VSSERV|Running|Auto|Own Process|"c:\program files\bitdefender\bitdefender security\bdservicehost.exe" "settings/services/configs/bdshieldsrv_config.json"|Normal|LocalSystem|0|
|BitLocker Drive Encryption Service|BDESVC|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|localSystem|0|
|Block Level Backup Engine Service|wbengine|Stopped|Manual|Own Process|"c:\windows\system32\wbengine.exe"|Normal|localSystem|0|
|Bluetooth Audio Gateway Service|BTAGService|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted|Normal|NT AUTHORITY\LocalService|0|
|Bluetooth Support Service|bthserv|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT AUTHORITY\LocalService|0|
|BluetoothUserService_2d321|BluetoothUserService_2d321|Running|Manual|Unknown|c:\windows\system32\svchost.exe -k bthappgroup -p|Normal|Not Available|0|
|Capability Access Manager Service|camsvc|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k appmodel -p|Normal|LocalSystem|0|
|CaptureService_2d321|CaptureService_2d321|Stopped|Manual|Unknown|c:\windows\system32\svchost.exe -k localservice -p|Normal|Not Available|0|
|cbdhsvc_2d321|cbdhsvc_2d321|Running|Manual|Unknown|c:\windows\system32\svchost.exe -k clipboardsvcgroup -p|Normal|Not Available|0|
|CDPUserSvc_2d321|CDPUserSvc_2d321|Running|Auto|Unknown|c:\windows\system32\svchost.exe -k unistacksvcgroup|Normal|Not Available|0|
|Cellular Time|autotimesvc|Stopped|Manual|Own Process|c:\windows\system32\svchost.exe -k autotimesvc|Normal|NT AUTHORITY\LocalService|0|
|Certificate Propagation|CertPropSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs|Normal|LocalSystem|0|
|Client License Service (ClipSVC)|ClipSVC|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k wsappx -p|Normal|LocalSystem|0|
|CNG Key Isolation|KeyIso|Running|Manual|Share Process|c:\windows\system32\lsass.exe|Normal|LocalSystem|0|
|COM+ Event System|EventSystem|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT AUTHORITY\LocalService|0|
|COM+ System Application|COMSysApp|Stopped|Manual|Own Process|c:\windows\system32\dllhost.exe /processid:{02d4b3f1-fd88-11d1-960d-00805fc79235}|Normal|LocalSystem|0|
|Connected Devices Platform Service|CDPSvc|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT AUTHORITY\LocalService|0|
|Connected User Experiences and Telemetry|DiagTrack|Stopped|Auto|Own Process|c:\windows\system32\svchost.exe -k utcsvc -p|Normal|LocalSystem|0|
|ConsentUxUserSvc_2d321|ConsentUxUserSvc_2d321|Stopped|Manual|Unknown|c:\windows\system32\svchost.exe -k devicesflow|Normal|Not Available|0|
|CoreMessaging|CoreMessagingRegistrar|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k localservicenonetwork -p|Normal|NT AUTHORITY\LocalService|0|
|Corsair Service|CorsairService|Running|Auto|Own Process|"c:\program files (x86)\corsair\corsair icue software\corsair.service.exe"|Normal|LocalSystem|0|
|Credential Manager|VaultSvc|Running|Manual|Share Process|c:\windows\system32\lsass.exe|Normal|LocalSystem|0|
|CredentialEnrollmentManagerUserSvc_2d321|CredentialEnrollmentManagerUserSvc_2d321|Stopped|Manual|Unknown|c:\windows\system32\credentialenrollmentmanager.exe|Normal|Not Available|0|
|Cryptographic Services|CryptSvc|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k networkservice -p|Normal|NT Authority\NetworkService|0|
|Data Sharing Service|DsSvc|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Ignore|LocalSystem|0|
|Data Usage|DusmSvc|Running|Auto|Own Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT Authority\LocalService|0|
|DCOM Server Process Launcher|DcomLaunch|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k dcomlaunch -p|Normal|LocalSystem|0|
|Delivery Optimization|DoSvc|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k networkservice -p|Normal|NT Authority\NetworkService|0|
|Device Association Service|DeviceAssociationService|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Device Install Service|DeviceInstall|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k dcomlaunch -p|Normal|LocalSystem|0|
|Device Management Enrollment Service|DmEnrollmentSvc|Stopped|Manual|Own Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Device Management Wireless Application Protocol (WAP) Push message Routing Service|dmwappushservice|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Device Setup Manager|DsmSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|DeviceAssociationBrokerSvc_2d321|DeviceAssociationBrokerSvc_2d321|Stopped|Manual|Unknown|c:\windows\system32\svchost.exe -k devicesflow -p|Normal|Not Available|0|
|DevicePickerUserSvc_2d321|DevicePickerUserSvc_2d321|Stopped|Manual|Unknown|c:\windows\system32\svchost.exe -k devicesflow|Normal|Not Available|0|
|DevicesFlowUserSvc_2d321|DevicesFlowUserSvc_2d321|Stopped|Manual|Unknown|c:\windows\system32\svchost.exe -k devicesflow|Normal|Not Available|0|
|DevQuery Background Discovery Broker|DevQueryBroker|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|DHCP Client|Dhcp|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT Authority\LocalService|0|
|Diagnostic Execution Service|diagsvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k diagnostics|Normal|LocalSystem|0|
|Diagnostic Policy Service|DPS|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k localservicenonetwork -p|Normal|NT AUTHORITY\LocalService|0|
|Diagnostic Service Host|WdiServiceHost|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT AUTHORITY\LocalService|0|
|Diagnostic System Host|WdiSystemHost|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Display Enhancement Service|DisplayEnhancementService|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Display Policy Service|DispBrokerDesktopSvc|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT AUTHORITY\LocalService|0|
|Distributed Link Tracking Client|TrkWks|Stopped|Auto|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Distributed Transaction Coordinator|MSDTC|Stopped|Manual|Own Process|c:\windows\system32\msdtc.exe|Normal|NT AUTHORITY\NetworkService|0|
|DNS Client|Dnscache|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k networkservice -p|Normal|NT AUTHORITY\NetworkService|0|
|Downloaded Maps Manager|MapsBroker|Stopped|Auto|Own Process|c:\windows\system32\svchost.exe -k networkservice -p|Normal|NT AUTHORITY\NetworkService|0|
|EasyAntiCheat|EasyAntiCheat|Stopped|Manual|Own Process|"c:\program files (x86)\easyanticheat\easyanticheat.exe"|Normal|LocalSystem|0|
|Embedded Mode|embeddedmode|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Encrypting File System (EFS)|EFS|Stopped|Manual|Share Process|c:\windows\system32\lsass.exe|Normal|LocalSystem|0|
|Energy Server Service queencreek|ESRV_SVC_QUEENCREEK|Running|Auto|Own Process|"c:\program files\intel\sur\queencreek\x64\esrv_svc.exe" "--auto_start" "--start" "--start_options_registry_key" "hkey_local_machine\system\currentcontrolset\services\esrv_svc_queencreek\_start"|Normal|LocalSystem|0|
|Enterprise App Management Service|EntAppSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k appmodel -p|Normal|LocalSystem|0|
|Extensible Authentication Protocol|Eaphost|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|localSystem|0|
|Fax|Fax|Stopped|Manual|Own Process|c:\windows\system32\fxssvc.exe|Normal|NT AUTHORITY\NetworkService|0|
|File History Service|fhsvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Function Discovery Provider Host|fdPHost|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT AUTHORITY\LocalService|0|
|Function Discovery Resource Publication|FDResPub|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p|Normal|NT AUTHORITY\LocalService|0|
|Geolocation Service|lfsvc|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Google Chrome Elevation Service|GoogleChromeElevationService|Stopped|Manual|Own Process|"c:\program files (x86)\google\chrome\application\79.0.3945.117\elevation_service.exe"|Normal|LocalSystem|0|
|Google Update Service (gupdate)|gupdate|Stopped|Auto|Own Process|"c:\program files (x86)\google\update\googleupdate.exe" /svc|Normal|LocalSystem|0|
|Google Update Service (gupdatem)|gupdatem|Stopped|Manual|Own Process|"c:\program files (x86)\google\update\googleupdate.exe" /medsvc|Normal|LocalSystem|0|
|GraphicsPerfSvc|GraphicsPerfSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k graphicsperfsvcgroup|Ignore|LocalSystem|0|
|Group Policy Client|gpsvc|Stopped|Auto|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Human Interface Device Service|hidserv|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|HV Host Service|HvHost|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Hyper-V Data Exchange Service|vmickvpexchange|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Hyper-V Guest Service Interface|vmicguestinterface|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Hyper-V Guest Shutdown Service|vmicshutdown|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Hyper-V Heartbeat Service|vmicheartbeat|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k icservice -p|Normal|LocalSystem|0|
|Hyper-V PowerShell Direct Service|vmicvmsession|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Hyper-V Remote Desktop Virtualization Service|vmicrdv|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k icservice -p|Normal|LocalSystem|0|
|Hyper-V Time Synchronization Service|vmictimesync|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT AUTHORITY\LocalService|0|
|Hyper-V Volume Shadow Copy Requestor|vmicvss|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|IKE and AuthIP IPsec Keying Modules|IKEEXT|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Intel Bluetooth Service|ibtsiva|Running|Auto|Own Process|c:\windows\system32\ibtsiva|Normal|LocalSystem|0|
|Intel(R) Capability Licensing Service TCP IP Interface|Intel(R) Capability Licensing Service TCP IP Interface|Stopped|Manual|Own Process|"c:\program files\intel\intel(r) management engine components\icls\socketheciserver.exe"|Ignore|LocalSystem|0|
|Intel(R) Driver & Support Assistant|DSAService|Running|Auto|Own Process|"c:\program files (x86)\intel\driver and support assistant\dsaservice.exe"|Normal|LocalSystem|0|
|Intel(R) Driver & Support Assistant Updater|DSAUpdateService|Running|Manual|Own Process|"c:\program files (x86)\intel\driver and support assistant\dsaupdateservice.exe"|Normal|LocalSystem|0|
|Intel(R) Dynamic Application Loader Host Interface Service|jhi_service|Running|Auto|Own Process|"c:\program files (x86)\intel\intel(r) management engine components\dal\jhi_service.exe"|Ignore|LocalSystem|0|
|Intel(R) Management and Security Application Local Management Service|LMS|Running|Auto|Own Process|"c:\program files (x86)\intel\intel(r) management engine components\lms\lms.exe"|Normal|LocalSystem|0|
|Intel(R) PROSet Monitoring Service|Intel(R) PROSet Monitoring Service|Running|Auto|Own Process|c:\windows\system32\iprosetmonitor.exe|Normal|LocalSystem|0|
|Intel(R) PROSet/Wireless Event Log|EvtEng|Running|Auto|Own Process|"c:\program files\intel\wifi\bin\evteng.exe"|Normal|LocalSystem|0|
|Intel(R) PROSet/Wireless Registry Service|RegSrvc|Running|Auto|Own Process|"c:\program files\common files\intel\wirelesscommon\regsrvc.exe"|Normal|LocalSystem|0|
|Intel(R) PROSet/Wireless Zero Configuration Service|ZeroConfigService|Running|Auto|Own Process|"c:\program files\intel\wifi\bin\zeroconfigservice.exe"|Normal|LocalSystem|0|
|Intel(R) SUR QC Software Asset Manager|Intel(R) SUR QC SAM|Stopped|Manual|Own Process|"c:\program files\intel\sur\queencreek\updater\bin\intelsoftwareassetmanagerservice.exe"|Ignore|LocalSystem|0|
|Intel(R) System Usage Report Service SystemUsageReportSvc_QUEENCREEK|SystemUsageReportSvc_QUEENCREEK|Running|Auto|Own Process|"c:\program files\intel\sur\queencreek\sursvc.exe"|Normal|LocalSystem|0|
|Intel(R) TPM Provisioning Service|Intel(R) TPM Provisioning Service|Stopped|Auto|Own Process|"c:\program files\intel\intel(r) management engine components\icls\tpmprovisioningservice.exe"|Ignore|LocalSystem|0|
|Internet Connection Sharing (ICS)|SharedAccess|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|IP Helper|iphlpsvc|Stopped|Auto|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|IP Translation Configuration Service|IpxlatCfgSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|IPsec Policy Agent|PolicyAgent|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k networkservicenetworkrestricted -p|Normal|NT Authority\NetworkService|0|
|KtmRm for Distributed Transaction Coordinator|KtmRm|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k networkserviceandnoimpersonation -p|Normal|NT AUTHORITY\NetworkService|0|
|Language Experience Service|LxpSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs|Ignore|LocalSystem|0|
|Link-Layer Topology Discovery Mapper|lltdsvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT AUTHORITY\LocalService|0|
|Local Profile Assistant Service|wlpasvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT Authority\LocalService|0|
|LSM|LSM|Running|Unknown|Unknown|Not Available|Unknown|Not Available|Not Available|
|Malwarebytes Service|MBAMService|Stopped|Manual|Own Process|"c:\program files\malwarebytes\anti-malware\mbamservice.exe"|Normal|LocalSystem|0|
|MessagingService_2d321|MessagingService_2d321|Stopped|Manual|Unknown|c:\windows\system32\svchost.exe -k unistacksvcgroup|Ignore|Not Available|0|
|Microsoft (R) Diagnostics Hub Standard Collector Service|diagnosticshub.standardcollector.service|Stopped|Manual|Own Process|c:\windows\system32\diagsvcs\diagnosticshub.standardcollector.service.exe|Normal|LocalSystem|0|
|Microsoft Account Sign-in Assistant|wlidsvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Microsoft iSCSI Initiator Service|MSiSCSI|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Microsoft Office Click-to-Run Service|ClickToRunSvc|Running|Auto|Own Process|"c:\program files\common files\microsoft shared\clicktorun\officeclicktorun.exe" /service|Normal|LocalSystem|0|
|Microsoft Passport|NgcSvc|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Microsoft Passport Container|NgcCtnrSvc|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT AUTHORITY\LocalService|0|
|Microsoft Software Shadow Copy Provider|swprv|Stopped|Manual|Own Process|c:\windows\system32\svchost.exe -k swprv|Normal|LocalSystem|0|
|Microsoft Storage Spaces SMP|smphost|Stopped|Manual|Own Process|c:\windows\system32\svchost.exe -k smphost|Normal|NT AUTHORITY\NetworkService|0|
|Microsoft Store Install Service|InstallService|Running|Manual|Own Process|c:\windows\system32\svchost.exe -k netsvcs -p|Ignore|LocalSystem|0|
|Microsoft Windows SMS Router Service.|SmsRouter|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT Authority\LocalService|0|
|Mozilla Maintenance Service|MozillaMaintenance|Stopped|Manual|Own Process|"c:\program files (x86)\mozilla maintenance service\maintenanceservice.exe"|Normal|LocalSystem|0|
|MSI Fast Boot Service|MSI_FastBoot|Running|Auto|Own Process|"c:\program files (x86)\msi\fast boot\fastbootservice.exe"|Normal|LocalSystem|0|
|MSI Live Update Service|MSI_LiveUpdate_Service|Running|Auto|Own Process|"c:\program files (x86)\msi\live update\msi_liveupdate_service.exe"|Normal|LocalSystem|0|
|Natural Authentication|NaturalAuthentication|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Net.Tcp Port Sharing Service|NetTcpPortSharing|Stopped|Disabled|Share Process|c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe|Normal|NT AUTHORITY\LocalService|0|
|Netlogon|Netlogon|Stopped|Manual|Share Process|c:\windows\system32\lsass.exe|Normal|LocalSystem|0|
|NetSetupSvc|NetSetupSvc|Stopped|Unknown|Unknown|Not Available|Unknown|Not Available|Not Available|
|Network Connected Devices Auto-Setup|NcdAutoSetup|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicenonetwork -p|Normal|NT AUTHORITY\LocalService|0|
|Network Connection Broker|NcbService|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Network Connections|Netman|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Network Connectivity Assistant|NcaSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Network List Service|netprofm|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT AUTHORITY\LocalService|0|
|Network Location Awareness|NlaSvc|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k networkservice -p|Normal|NT AUTHORITY\NetworkService|0|
|Network Store Interface Service|nsi|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT Authority\LocalService|0|
|NVIDIA Display Container LS|NVDisplay.ContainerLocalSystem|Running|Auto|Own Process|"c:\program files\nvidia corporation\display.nvcontainer\nvdisplay.container.exe" -s nvdisplay.containerlocalsystem -f "c:\programdata\nvidia\nvdisplay.containerlocalsystem.log" -l 3 -d "c:\program files\nvidia corporation\display.nvcontainer\plugins\localsystem" -r -p 30000|Ignore|LocalSystem|0|
|NVIDIA LocalSystem Container|NvContainerLocalSystem|Running|Auto|Own Process|"c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe" -s nvcontainerlocalsystem -f "c:\programdata\nvidia\nvcontainerlocalsystem.log" -l 3 -d "c:\program files\nvidia corporation\nvcontainer\plugins\localsystem" -r -p 30000 -st "c:\program files\nvidia corporation\nvcontainer\nvcontainertelemetryapi.dll"|Ignore|LocalSystem|0|
|NVIDIA NetworkService Container|NvContainerNetworkService|Stopped|Manual|Own Process|"c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe" -s nvcontainernetworkservice -f "c:\programdata\nvidia\nvcontainernetworkservice.log" -l 3 -d "c:\program files\nvidia corporation\nvcontainer\plugins\networkservice" -r -p 30000 -st "c:\program files\nvidia corporation\nvcontainer\nvcontainertelemetryapi.dll"|Ignore|NT AUTHORITY\NetworkService|0|
|Office 64 Source Engine|ose64|Stopped|Manual|Own Process|"c:\program files\common files\microsoft shared\source engine\ose.exe"|Normal|LocalSystem|0|
|OneSyncSvc_2d321|OneSyncSvc_2d321|Running|Auto|Unknown|c:\windows\system32\svchost.exe -k unistacksvcgroup|Ignore|Not Available|0|
|OpenSSH Authentication Agent|ssh-agent|Stopped|Disabled|Own Process|c:\windows\system32\openssh\ssh-agent.exe|Normal|LocalSystem|0|
|Optimize drives|defragsvc|Stopped|Manual|Own Process|c:\windows\system32\svchost.exe -k defragsvc|Normal|localSystem|0|
|Origin Client Service|Origin Client Service|Stopped|Manual|Own Process|"c:\program files (x86)\origin\originclientservice.exe"|Normal|LocalSystem|0|
|Origin Web Helper Service|Origin Web Helper Service|Stopped|Auto|Own Process|"c:\program files (x86)\origin\originwebhelperservice.exe"|Normal|NT AUTHORITY\LocalService|0|
|Parental Controls|WpcMonSvc|Stopped|Manual|Own Process|c:\windows\system32\svchost.exe -k localservice|Normal|LocalSystem|0|
|Payments and NFC/SE Manager|SEMgrSvc|Running|Manual|Own Process|c:\windows\system32\svchost.exe -k localservice -p|Ignore|NT AUTHORITY\LocalService|0|
|Peer Name Resolution Protocol|PNRPsvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicepeernet|Normal|NT AUTHORITY\LocalService|0|
|Peer Networking Grouping|p2psvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicepeernet|Normal|NT AUTHORITY\LocalService|0|
|Peer Networking Identity Manager|p2pimsvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicepeernet|Normal|NT AUTHORITY\LocalService|0|
|Performance Counter DLL Host|PerfHost|Stopped|Manual|Own Process|c:\windows\syswow64\perfhost.exe|Normal|NT AUTHORITY\LocalService|0|
|Performance Logs & Alerts|pla|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicenonetwork -p|Normal|NT AUTHORITY\LocalService|0|
|Phone Service|PhoneSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT Authority\LocalService|0|
|PimIndexMaintenanceSvc_2d321|PimIndexMaintenanceSvc_2d321|Running|Manual|Unknown|c:\windows\system32\svchost.exe -k unistacksvcgroup|Ignore|Not Available|0|
|Plug and Play|PlugPlay|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k dcomlaunch -p|Normal|LocalSystem|0|
|PnkBstrA|PnkBstrA|Running|Auto|Own Process|c:\windows\system32\pnkbstra.exe|Normal|LocalSystem|0|
|PNRP Machine Name Publication Service|PNRPAutoReg|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicepeernet|Normal|NT AUTHORITY\LocalService|0|
|Portable Device Enumerator Service|WPDBusEnum|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted|Normal|LocalSystem|0|
|Power|Power|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k dcomlaunch -p|Normal|LocalSystem|0|
|Power_a17007|Power_a17007|Running|Auto|Own Process|c:\program files\cold turkey\\servicehub.power.exe|Normal|LocalSystem|0|
|Print Spooler|Spooler|Stopped|Auto|Own Process|c:\windows\system32\spoolsv.exe|Normal|LocalSystem|0|
|Printer Extensions and Notifications|PrintNotify|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k print|Normal|LocalSystem|0|
|PrintWorkflowUserSvc_2d321|PrintWorkflowUserSvc_2d321|Stopped|Manual|Unknown|c:\windows\system32\svchost.exe -k printworkflow|Normal|Not Available|0|
|Problem Reports and Solutions Control Panel Support|wercplsupport|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|localSystem|0|
|Program Compatibility Assistant Service|PcaSvc|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Quality Windows Audio Video Experience|QWAVE|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p|Normal|NT AUTHORITY\LocalService|0|
|Radio Management Service|RmSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted|Normal|NT AUTHORITY\LocalService|0|
|Razer Central Service|RzActionSvc|Running|Auto|Own Process|"c:\program files (x86)\razer\razer services\razer central\razercentralservice.exe"|Normal|LocalSystem|0|
|Razer Game Manager|Razer Game Manager Service|Running|Auto|Own Process|"c:\program files (x86)\razer\razer services\gms\gamemanagerservice.exe"|Normal|LocalSystem|0|
|Razer Synapse Service|Razer Synapse Service|Running|Auto|Own Process|"c:\program files (x86)\razer\synapse3\service\razer synapse service.exe"|Normal|LocalSystem|0|
|Recommended Troubleshooting Service|TroubleshootingSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Remote Access Auto Connection Manager|RasAuto|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|localSystem|0|
|Remote Access Connection Manager|RasMan|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k netsvcs|Normal|localSystem|0|
|Remote Desktop Configuration|SessionEnv|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|localSystem|0|
|Remote Desktop Services|TermService|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k networkservice|Normal|NT Authority\NetworkService|0|
|Remote Desktop Services UserMode Port Redirector|UmRdpService|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|localSystem|0|
|Remote Procedure Call (RPC)|RpcSs|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k rpcss -p|Normal|NT AUTHORITY\NetworkService|0|
|Remote Procedure Call (RPC) Locator|RpcLocator|Stopped|Manual|Own Process|c:\windows\system32\locator.exe|Normal|NT AUTHORITY\NetworkService|0|
|Remote Registry|RemoteRegistry|Stopped|Disabled|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT AUTHORITY\LocalService|0|
|Retail Demo Service|RetailDemo|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k rdxgroup|Normal|LocalSystem|0|
|Routing and Remote Access|RemoteAccess|Stopped|Disabled|Share Process|c:\windows\system32\svchost.exe -k netsvcs|Normal|localSystem|0|
|RPC Endpoint Mapper|RpcEptMapper|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k rpcss -p|Normal|NT AUTHORITY\NetworkService|0|
|RzKLService|RzKLService|Running|Auto|Own Process|"c:\program files (x86)\razer\razer cortex\rzklservice.exe"|Normal|LocalSystem|0|
|Secondary Logon|seclogon|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Secure Socket Tunneling Protocol Service|SstpSvc|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT Authority\LocalService|0|
|Security Accounts Manager|SamSs|Running|Auto|Share Process|c:\windows\system32\lsass.exe|Normal|LocalSystem|0|
|Security Center|wscsvc|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT AUTHORITY\LocalService|0|
|Sensor Data Service|SensorDataService|Stopped|Manual|Own Process|c:\windows\system32\sensordataservice.exe|Normal|LocalSystem|0|
|Sensor Monitoring Service|SensrSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p|Normal|NT AUTHORITY\LocalService|0|
|Sensor Service|SensorService|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Server|LanmanServer|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Shared PC Account Manager|shpamsvc|Stopped|Disabled|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Shell Hardware Detection|ShellHWDetection|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Ignore|LocalSystem|0|
|Smart Card|SCardSvr|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localserviceandnoimpersonation|Normal|NT AUTHORITY\LocalService|0|
|Smart Card Device Enumeration Service|ScDeviceEnum|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted|Normal|LocalSystem|0|
|Smart Card Removal Policy|SCPolicySvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs|Normal|LocalSystem|0|
|SNMP Trap|SNMPTRAP|Stopped|Manual|Own Process|c:\windows\system32\snmptrap.exe|Normal|NT AUTHORITY\LocalService|0|
|Software Protection|sppsvc|Stopped|Auto|Own Process|c:\windows\system32\sppsvc.exe|Normal|NT AUTHORITY\NetworkService|0|
|Spatial Data Service|SharedRealitySvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT AUTHORITY\LocalService|0|
|Spot Verifier|svsvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|SSDP Discovery|SSDPSRV|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p|Normal|NT AUTHORITY\LocalService|0|
|State Repository Service|StateRepository|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k appmodel -p|Normal|LocalSystem|0|
|Steam Client Service|Steam Client Service|Stopped|Manual|Own Process|"c:\program files (x86)\common files\steam\steamservice.exe" /runasservice|Normal|LocalSystem|0|
|Still Image Acquisition Events|WiaRpc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Storage Service|StorSvc|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Storage Tiers Management|TieringEngineService|Stopped|Manual|Own Process|c:\windows\system32\tieringengineservice.exe|Normal|localSystem|0|
|SysMain|SysMain|Stopped|Auto|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Ignore|LocalSystem|0|
|System Event Notification Service|SENS|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|System Events Broker|SystemEventsBroker|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k dcomlaunch -p|Normal|LocalSystem|0|
|System Guard Runtime Monitor Broker|SgrmBroker|Running|Auto|Own Process|c:\windows\system32\sgrmbroker.exe|Normal|LocalSystem|0|
|Task Scheduler|Schedule|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|TCP/IP NetBIOS Helper|lmhosts|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT AUTHORITY\LocalService|0|
|Telephony|TapiSrv|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k networkservice -p|Normal|NT AUTHORITY\NetworkService|0|
|Themes|Themes|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Time Broker|TimeBrokerSvc|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT AUTHORITY\LocalService|0|
|Touch Keyboard and Handwriting Panel Service|TabletInputService|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|UnistoreSvc_2d321|UnistoreSvc_2d321|Running|Manual|Unknown|c:\windows\system32\svchost.exe -k unistacksvcgroup|Ignore|Not Available|0|
|Update Orchestrator Service|UsoSvc|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|UPnP Device Host|upnphost|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p|Normal|NT AUTHORITY\LocalService|0|
|User Energy Server Service queencreek|USER_ESRV_SVC_QUEENCREEK|Stopped|Manual|Own Process|"c:\program files\intel\sur\queencreek\x64\esrv_svc.exe" "--run_as_user_process"|Normal|LocalSystem|0|
|User Manager|UserManager|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|User Profile Service|ProfSvc|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|UserDataSvc_2d321|UserDataSvc_2d321|Running|Manual|Unknown|c:\windows\system32\svchost.exe -k unistacksvcgroup|Ignore|Not Available|0|
|Virtual Disk|vds|Stopped|Manual|Own Process|c:\windows\system32\vds.exe|Normal|LocalSystem|0|
|Volume Shadow Copy|VSS|Stopped|Manual|Own Process|c:\windows\system32\vssvc.exe|Normal|LocalSystem|0|
|Volumetric Audio Compositor Service|VacSvc|Stopped|Manual|Own Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT AUTHORITY\LocalService|0|
|WalletService|WalletService|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k appmodel -p|Ignore|LocalSystem|0|
|WarpJITSvc|WarpJITSvc|Stopped|Manual|Own Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted|Ignore|NT Authority\LocalService|0|
|Web Account Manager|TokenBroker|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|WebClient|WebClient|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT AUTHORITY\LocalService|0|
|Wi-Fi Direct Services Connection Manager Service|WFDSConMgrSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT AUTHORITY\LocalService|0|
|Windows Audio|Audiosrv|Running|Auto|Own Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT AUTHORITY\LocalService|0|
|Windows Audio Endpoint Builder|AudioEndpointBuilder|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|Windows Backup|SDRSVC|Stopped|Manual|Own Process|c:\windows\system32\svchost.exe -k sdrsvc|Normal|localSystem|0|
|Windows Biometric Service|WbioSrvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k wbiosvcgroup|Normal|LocalSystem|0|
|Windows Camera Frame Server|FrameServer|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k camera|Normal|NT AUTHORITY\LocalService|0|
|Windows Connect Now - Config Registrar|wcncsvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p|Normal|NT AUTHORITY\LocalService|0|
|Windows Connection Manager|Wcmsvc|Running|Auto|Own Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT Authority\LocalService|0|
|Windows Defender Antivirus Network Inspection Service|WdNisSvc|Stopped|Manual|Own Process|"c:\program files\windows defender\nissrv.exe"|Normal|NT AUTHORITY\LocalService|0|
|Windows Defender Antivirus Service|WinDefend|Stopped|Manual|Own Process|"c:\program files\windows defender\msmpeng.exe"|Normal|LocalSystem|0|
|Windows Defender Firewall|mpssvc|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k localservicenonetworkfirewall -p|Normal|NT Authority\LocalService|0|
|Windows Encryption Provider Host Service|WEPHOSTSVC|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k wephostsvcgroup|Normal|NT AUTHORITY\LocalService|0|
|Windows Error Reporting Service|WerSvc|Stopped|Manual|Own Process|c:\windows\system32\svchost.exe -k wersvcgroup|Ignore|localSystem|0|
|Windows Event Collector|Wecsvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k networkservice -p|Normal|NT AUTHORITY\NetworkService|0|
|Windows Event Log|EventLog|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT AUTHORITY\LocalService|0|
|Windows Font Cache Service|FontCache|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT AUTHORITY\LocalService|0|
|Windows Image Acquisition (WIA)|stisvc|Stopped|Auto|Own Process|c:\windows\system32\svchost.exe -k imgsvc|Normal|NT Authority\LocalService|0|
|Windows Insider Service|wisvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Windows Installer|msiserver|Stopped|Manual|Own Process|c:\windows\system32\msiexec.exe /v|Normal|LocalSystem|0|
|Windows License Manager Service|LicenseManager|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Ignore|NT Authority\LocalService|0|
|Windows Management Instrumentation|Winmgmt|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Ignore|localSystem|0|
|Windows Management Service|WManSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Windows Media Player Network Sharing Service|WMPNetworkSvc|Stopped|Manual|Own Process|"c:\program files\windows media player\wmpnetwk.exe"|Normal|NT AUTHORITY\NetworkService|0|
|Windows Mobile Hotspot Service|icssvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT Authority\LocalService|0|
|Windows Modules Installer|TrustedInstaller|Stopped|Manual|Own Process|c:\windows\servicing\trustedinstaller.exe|Normal|localSystem|0|
|Windows Perception Service|spectrum|Stopped|Manual|Own Process|c:\windows\system32\spectrum.exe|Normal|NT AUTHORITY\LocalService|0|
|Windows Perception Simulation Service|perceptionsimulation|Stopped|Manual|Own Process|c:\windows\system32\perceptionsimulation\perceptionsimulationservice.exe|Normal|LocalSystem|0|
|Windows Presentation Foundation Font Cache 3.0.0.0|FontCache3.0.0.0|Stopped|Manual|Own Process|c:\windows\microsoft.net\framework64\v3.0\wpf\presentationfontcache.exe|Normal|NT Authority\LocalService|0|
|Windows Push Notifications System Service|WpnService|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Windows PushToInstall Service|PushToInstall|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Ignore|LocalSystem|0|
|Windows Remote Management (WS-Management)|WinRM|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k networkservice -p|Normal|NT AUTHORITY\NetworkService|0|
|Windows Search|WSearch|Running|Auto|Own Process|c:\windows\system32\searchindexer.exe /embedding|Normal|LocalSystem|0|
|Windows Security Service|SecurityHealthService|Running|Manual|Own Process|c:\windows\system32\securityhealthservice.exe|Normal|LocalSystem|0|
|Windows Time|W32Time|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservice|Normal|NT AUTHORITY\LocalService|0|
|Windows Update|wuauserv|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Windows Update Medic Service|WaaSMedicSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k wusvcs -p|Normal|LocalSystem|0|
|WinHTTP Web Proxy Auto-Discovery Service|WinHttpAutoProxySvc|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p|Normal|NT AUTHORITY\LocalService|0|
|Wired AutoConfig|dot3svc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|localSystem|0|
|WLAN AutoConfig|WlanSvc|Running|Auto|Own Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|LocalSystem|0|
|WMI Performance Adapter|wmiApSrv|Stopped|Manual|Own Process|c:\windows\system32\wbem\wmiapsrv.exe|Normal|localSystem|0|
|Work Folders|workfolderssvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localservice -p|Normal|NT AUTHORITY\LocalService|0|
|Workstation|LanmanWorkstation|Running|Auto|Share Process|c:\windows\system32\svchost.exe -k networkservice -p|Normal|NT AUTHORITY\NetworkService|0|
|WpnUserService_2d321|WpnUserService_2d321|Running|Auto|Unknown|c:\windows\system32\svchost.exe -k unistacksvcgroup|Ignore|Not Available|0|
|WWAN AutoConfig|WwanSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p|Normal|localSystem|0|
|Xbox Accessory Management Service|XboxGipSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Xbox Live Auth Manager|XblAuthManager|Running|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Xbox Live Game Save|XblGameSave|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|
|Xbox Live Networking Service|XboxNetApiSvc|Stopped|Manual|Share Process|c:\windows\system32\svchost.exe -k netsvcs -p|Normal|LocalSystem|0|

Thanks Sarnen,

What we are looking for here is software that could potentially affect the game’s connection and cause it to disconnect like you’re describing. I have a list of programs that I see running on your system, and I’d like to have you try uninstalling them one or two at a time then test the game again in between each one.

  • OneDrive
  • Razer Synapse
  • Cold Turkey blocker
  • BitDefender

If the disconnections stop after removing one of those then we’ll have narrowed it down to an issue with the software conflicting with Heroes of the Storm. Reinstalling the software could be an option at that point, or configuring it work with the game client if that’s possible.

If you don’t have any luck with that, then our next step would be to have you run a WinMTR so we can get a look at what the connection is doing when it’s disconnecting. Start the WinMTR before joining a match and then stop the test after the match ends and send us the results. Thanks!

bitdender is my antivirus so I’m leaving that on, and I did have hots whitelisted on everything. Disabled razer synapse and onedrive, adn ran MTR. Didn’t notice the issue this time. IF only bnet would actually allow me to post it (no the preformat thing isn’t working)…

If the preformatted text option isn’t working try the blockquote (looks like "). Both of these methods just break the web link so it can’t be directly clicked). You can also put spaces in between . and com which will break the link.

If the issue isn’t happening anymore the WinMTR would be particularly useful. You’d want to continue playing and then if the problem starts up again run the WinMTR to “capture” what it looks like when the issue occurs.

Yeah this is pretty ridiculosu so here’s a pastebin
pastebin (d0t) com/ Gj4tXz3z

WinMTR results look fine and don’t show any issues at all.

You mentioned you didn’t see the issue when this WinMTR was run correct?

It looks like you’re connecting from within a university network. If the issue persists do you have an alternate network that you can test out like a mobile hotspot? You could also try connecting through a VPN as that will act like a different network.

Sometimes university networks can be a cause for disconnection like this, so trying an alternate connection would help narrow down the issue further.

yes it is a university network. what sort of VPN would I need

There are a lot of different VPNs out there and many of them offer free or trial periods. We can’t recommend any one specifically but you should be able to search online to find one. They are very easy to download and set up nowadays.

If a VPN helps then that would narrow it down to a problem with the university network or the ISP.

I should point out this only started happening around the time deathwing dropped, and then eased up, and happened again, all with the same network/computer