Sat 01 Nov 06:17:52 2025 - Processes ok
No process checks defined
PID User WorkingSet/Peak VirtualMem/Peak PagedMem/Peak NPS Handles %CPU Start Time Elapsed Name Command
316 NT AUTHORITY\NETWORK SERVICE 50808/263816 3396880/3405696 194716/308552 67 481 1.0 2024-08-01 08:04:41 657973 SVC:ReportServer "C:\Program Files\Microsoft SQL Server\MSRS10_50.MSSQLSERVER\Reporting Services\ReportServer\bin\ReportingServicesService.exe"
2520 NT AUTHORITY\SYSTEM 93132/170968 899972/902788 352732/366436 36 414 0.3 2024-08-01 08:04:45 657973 powershell "C:\windows\System32\WindowsPowerShell\v1.0\powershell.exe" -ExecutionPolicy RemoteSigned -NoLogo -NonInteractive -NoProfile -WindowStyle Hidden -File "C:\Xymon\xymonclient.ps1"
832 NT AUTHORITY\LOCAL SERVICE 16120/133948 705916/720296 642060/642600 25 450 0.2 2024-08-01 08:04:19 657973 SVC:Dhcp/eventlog/lmhosts/vmictimesync C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
2528 NT AUTHORITY\SYSTEM 544/3404 25920/26248 1284/1284 5 33 0.1 2024-08-01 08:04:45 657973 conhost \??\C:\windows\system32\conhost.exe "13935456821387393103-2055931594-6698328901361945480-1389296828-9204002041056124510
4152 NT AUTHORITY\SYSTEM 36960/88084 680724/725932 57508/74480 45 647 0.1 2025-08-27 21:01:36 94156 SVC:WindowsAzureGuestAgent C:\WindowsAzure\GuestAgent_2.7.41491.1172_2025-08-27_190129\WindowsAzureGuestAgent.exe
400 NT AUTHORITY\SYSTEM 2604/6568 58136/59932 4528/4528 16 959 0.1 2024-08-01 08:04:17 657973 csrss %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
3372 NT AUTHORITY\SYSTEM 11684/29760 82672/121776 23748/23984 16 251 0.0 2024-08-01 08:05:43 657972 MicrosoftDependencyAgent "C:\Program Files\Microsoft Dependency Agent\bin\MicrosoftDependencyAgent.exe"
980 NT AUTHORITY\SYSTEM 4676/18044 86180/91204 9464/9744 28 425 0.0 2024-08-01 08:04:19 657973 SVC:Netman/TrkWks/UmRdpService/UxSms/vmickvpexchange/vmicshutdown/vmicvss C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
10268 NT AUTHORITY\SYSTEM 18976/59112 603132/607036 52228/58308 33 448 0.0 2025-08-27 21:01:34 94156 SVC:RdAgent C:\WindowsAzure\GuestAgent_2.7.41491.1172_2025-08-27_190129\WaAppAgent.exe
892 NT AUTHORITY\SYSTEM 103000/1331644 4816788/5461732 4414480/4957300 172 399778 0.0 2024-08-01 08:04:19 657973 SVC:BITS/CertPropSvc/gpsvc/IKEEXT/iphlpsvc/LanmanServer/ProfSvc/sacsvr/Schedule/SENS/SessionEnv/ShellHWDetection/Winmgmt/wuauserv C:\windows\system32\svchost.exe -k netsvcs
564 NT AUTHORITY\SYSTEM 14172/21024 65660/67196 14448/14552 35 1149 0.0 2024-08-01 08:04:18 657973 SVC:KeyIso/SamSs C:\windows\system32\lsass.exe
548 NT AUTHORITY\SYSTEM 6840/12784 45836/99868 6048/8920 14 314 0.0 2024-08-01 08:04:18 657973 services C:\windows\system32\services.exe
4 Unknown 52/9528 3340/12668 128/284 0 1089 0.0 2024-08-01 08:04:07 657974 System
4040 NT AUTHORITY\LOCAL SERVICE 1188/4232 25152/27200 1476/1512 6 55 0.0 2024-08-01 08:05:43 657972 SVC:MSSQLFDLauncher "C:\Program Files\Microsoft SQL Server\MSSQL10_50.MSSQLSERVER\MSSQL\Binn\fdlauncher.exe" -s MSSQL10_50.MSSQLSERVER
3868 NT AUTHORITY\SYSTEM 704/7828 56524/58060 3420/3628 9 102 0.0 2024-08-01 08:05:05 657973 rundll32 C:\windows\system32\rundll32.exe C:\windows\system32\pla.dll,PlaHost "RTEvents" "0xef8_0xefc_0x2e9f4d01"
3484 NT AUTHORITY\SYSTEM 716/7648 56524/58060 3256/3468 9 102 0.0 2024-08-01 08:04:55 657973 rundll32 C:\windows\system32\rundll32.exe C:\windows\system32\pla.dll,PlaHost "GAEvents" "0xd54_0xd58_0x280a45a6"
3444 NT AUTHORITY\SYSTEM 2376/5748 32460/42916 1948/2216 8 102 0.0 2024-08-01 08:04:54 657973 taskeng taskeng.exe {35A1D81C-5AD8-4933-BEBA-CAF8FE9B9A32} S-1-5-18:NT AUTHORITY\System:Service:
2712 NT AUTHORITY\NETWORK SERVICE 7668/22244 531596/535700 25392/26884 46 446 0.0 2024-08-01 08:04:46 657973 SVC:SQLSERVERAGENT "C:\Program Files\Microsoft SQL Server\MSSQL10_50.MSSQLSERVER\MSSQL\Binn\SQLAGENT.EXE" -i MSSQLSERVER
2400 NT AUTHORITY\SYSTEM 880/4820 39020/41744 2316/2400 6 59 0.0 2024-08-01 08:04:45 657973 SVC:XymonPSClient C:\Xymon\nssm.exe
2272 NT AUTHORITY\SYSTEM 4108/12400 50456/51988 8576/10052 17 164 0.0 2024-08-01 08:04:45 657973 SVC:W3SVC/WAS C:\windows\system32\svchost.exe -k iissvcs
2976 NT AUTHORITY\NETWORK SERVICE 1160/8088 60708/61748 3304/3484 17 148 0.0 2024-08-01 08:07:43 657970 SVC:MSDTC C:\windows\System32\msdtc.exe
2896 NT AUTHORITY\NETWORK SERVICE 1052/6292 32724/34164 2124/2180 10 96 0.0 2024-08-01 08:05:44 657972 SVC:PolicyAgent C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
2808 NT AUTHORITY\NETWORK SERVICE 416/3240 25920/27488 1036/1036 5 33 0.0 2024-08-01 08:04:47 657973 conhost \??\C:\windows\system32\conhost.exe "884572628157227516362277470-1202845949-17576685261445597096-1300841607971795190
19536 AZELIGO\eligo 3668/7164 65760/68836 1804/1980 8 111 0.0 2025-02-03 09:32:05 390046 rdpclip rdpclip
18388 NT AUTHORITY\SYSTEM 3316/11392 48280/255440 2624/2720 10 293 0.0 2025-02-03 09:32:04 390046 csrss %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
18236 AZELIGO\eligo 2892/5584 55048/59664 1668/1884 7 74 0.0 2025-02-03 09:32:05 390046 dwm "C:\windows\system32\Dwm.exe"
33692 IIS APPPOOL\DefaultAppPool 38420/38488 9220052/9221332 75340/75412 51 617 0.0 2025-11-01 05:50:40 27 w3wp c:\windows\system32\inetsrv\w3wp.exe -ap "DefaultAppPool" -v "v4.0" -l "webengine4.dll" -a \\.\pipe\iisipm1c7cebed-102c-4cbb-b0f5-35224bb4b2d4 -h "C:\inetpub\temp\apppools\DefaultAppPool\DefaultAppPool.config" -w "" -m 0 -t 20
26100 NT AUTHORITY\SYSTEM 2348/5488 30628/55424 1728/1900 7 100 0.0 2025-02-03 09:32:04 390046 winlogon winlogon.exe
19684 AZELIGO\eligo 5416/12232 418892/681064 7796/8392 21 201 0.0 2025-02-03 09:32:05 390046 taskhost "taskhost.exe"
10248 AZELIGO\eligo 42876/89628 347488/389588 57736/69248 51 775 0.0 2025-02-03 09:32:05 390046 explorer C:\windows\Explorer.EXE
4368 NT AUTHORITY\LOCAL SERVICE 124/3084 25628/27036 952/952 4 31 0.0 2024-08-01 08:05:45 657972 conhost \??\C:\windows\system32\conhost.exe "1986984763972768904209835361171921927-102152400119338232341717805021-1307919290
4360 NT AUTHORITY\LOCAL SERVICE 1096/5688 39424/39424 3548/3552 9 130 0.0 2024-08-01 08:05:45 657972 fdhost "C:\Program Files\Microsoft SQL Server\MSSQL10_50.MSSQLSERVER\MSSQL\Binn\fdhost.exe" "MSSQL10_50.MSSQLSERVERC29017938f1aaaf49ecfa401f798c615b17a6327c" "MSSQL10_50.MSSQLSERVER" "MSSQL10_50.MSSQLSERVER" "4" "" "8192" "M" "0" "" "" ""
4072 NT AUTHORITY\SYSTEM 988/3964 16068/17092 1172/1204 6 39 0.0 2024-08-01 08:05:43 657972 SVC:MicrosoftDependencyAgent "C:\Program Files\Microsoft Dependency Agent\bin\agentwrap.exe"
8924 AZELIGO\eligo 1688/5012 61176/61304 1436/1452 6 42 0.0 2025-02-03 09:38:08 390040 conhost \??\C:\windows\system32\conhost.exe "423606781600851886712389297371329181-1886508111390968192-2090297082-1017121696
4528 NT AUTHORITY\SYSTEM 4136/51128 614528/618880 45376/55024 24 300 0.0 2024-08-01 08:07:43 657970 SVC:MSMQ_MailRelyService "C:\mailservice\MSMQ_MailRelyService.exe"
36016 AZELIGO\eligo 72/3208 41956/51040 2028/2164 5 22 0.0 2025-02-03 09:38:08 390040 cmd "C:\Windows\System32\cmd.exe"
2220 AZELIGO\eligo 7824/53476 178828/187568 31000/34196 27 61009 0.0 2024-08-01 08:04:44 657973 SVC:TSM Client Scheduler "C:\Program Files\Tivoli\TSM\baclient\dsmcsvc.exe"
760 NT AUTHORITY\NETWORK SERVICE 5568/9460 46252/49596 5708/5832 16 316 0.0 2024-08-01 08:04:19 657973 SVC:RpcEptMapper/RpcSs C:\windows\system32\svchost.exe -k RPCSS
680 NT AUTHORITY\SYSTEM 4600/10908 54312/67792 4840/5224 14 358 0.0 2024-08-01 08:04:19 657973 SVC:DcomLaunch/PlugPlay/Power C:\windows\system32\svchost.exe -k DcomLaunch
592 NT AUTHORITY\LOCAL SERVICE 5548/14568 59400/60540 10852/10968 33 333 0.0 2024-08-01 08:04:20 657973 SVC:BFE/DPS/MpsSvc/pla C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
848 NT AUTHORITY\SYSTEM 288/21828 86452/88068 8280/15488 23 148 0.0 2024-08-01 08:04:19 657973 LogonUI "LogonUI.exe" /flags:0x0
1052 NT AUTHORITY\SYSTEM 2756/11764 80580/81536 6328/6520 19 283 0.0 2024-08-01 08:04:20 657973 SVC:Spooler C:\windows\System32\spoolsv.exe
1020 NT AUTHORITY\NETWORK SERVICE 10584/58760 465604/728900 37084/52416 55 568 0.0 2024-08-01 08:04:20 657973 SVC:CryptSvc/Dnscache/LanmanWorkstation/NlaSvc/WinRM C:\windows\system32\svchost.exe -k NetworkService
936 NT AUTHORITY\LOCAL SERVICE 8420/16860 102916/114584 8936/9348 28 387 0.0 2024-08-01 08:04:19 657973 SVC:EventSystem/FontCache/netprofm/nsi/W32Time/WinHttpAutoProxySvc C:\windows\system32\svchost.exe -k LocalService
452 NT AUTHORITY\SYSTEM 76/4760 45364/51428 1492/1796 10 80 0.0 2024-08-01 08:04:18 657973 wininit wininit.exe
300 NT AUTHORITY\SYSTEM 540/1312 4500/17856 496/536 2 33 0.0 2024-08-01 08:04:07 657974 smss \SystemRoot\System32\smss.exe
0 24/24 0/0 0/0 0 0 0.0 0 Idle
464 NT AUTHORITY\SYSTEM 120/4040 40584/40584 1648/1648 9 72 0.0 2024-08-01 08:04:18 657973 csrss %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
572 NT AUTHORITY\SYSTEM 3772/7256 35100/38180 3504/4200 10 263 0.0 2024-08-01 08:04:18 657973 lsm C:\windows\system32\lsm.exe
556 NT AUTHORITY\SYSTEM 1252/9856 54500/57108 3752/3952 11 142 0.0 2024-08-01 08:05:43 657972 SVC:VSS C:\windows\system32\vssvc.exe
492 NT AUTHORITY\SYSTEM 72/4596 24556/54912 1488/1640 6 76 0.0 2024-08-01 08:04:18 657973 winlogon winlogon.exe
1760 NT AUTHORITY\NETWORK SERVICE 24136/129544 2859184/2872856 189356/224140 24 20753 0.0 2024-08-01 08:04:23 657973 SVC:MsDtsServer100 "C:\Program Files\Microsoft SQL Server\100\DTS\Binn\MsDtsSrvr.exe"
1644 NT AUTHORITY\LOCAL SERVICE 876/3188 12940/14060 1144/1196 4 46 0.0 2024-08-01 08:04:41 657973 SVC:RemoteRegistry C:\windows\system32\svchost.exe -k regsvc
1608 NT AUTHORITY\SYSTEM 8132/21164 119384/120932 26724/26900 22 2065 0.0 2024-08-01 08:04:23 657973 SVC:IISADMIN C:\windows\system32\inetsrv\inetinfo.exe
1948 NT AUTHORITY\NETWORK SERVICE 1420/10828 61612/67760 5128/5316 29 236 0.0 2024-08-01 08:04:39 657973 SVC:MSMQ C:\windows\system32\mqsvc.exe
2148 AZELIGO\eligo 2092/44032 157528/174308 15732/31748 28 485 0.0 2024-08-01 08:04:43 657973 SVC:TSM Client Acceptor "C:\Program Files\Tivoli\TSM\baclient\dsmcad.exe"
2072 NT AUTHORITY\SYSTEM 1448/12520 89900/98092 4972/5124 17 194 0.0 2024-08-01 08:04:43 657973 SVC:SQLWriter "C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
2044 NT AUTHORITY\NETWORK SERVICE 424932/1488376 12035816/12083112 638588/1584492 137 664 0.0 2024-08-01 08:04:39 657973 SVC:MSSQLSERVER "C:\Program Files\Microsoft SQL Server\MSSQL10_50.MSSQLSERVER\MSSQL\Binn\sqlservr.exe" -sMSSQLSERVER
1376 AZELIGO\eligo 1112/5096 35320/36736 2688/2744 9 78 0.0 2024-08-01 08:04:22 657973 SVC:DeltaCopyService "C:\Program Files (x86)\DeltaCopy\DCServce.exe"
1200 NT AUTHORITY\SYSTEM 1456/11140 70748/71772 6184/6300 18 136 0.0 2024-08-01 08:04:21 657973 SVC:AppHostSvc C:\windows\system32\svchost.exe -k apphost
1080 NT AUTHORITY\SYSTEM 1616/7448 40784/41808 3492/3600 12 147 0.0 2024-08-01 08:04:20 657973 SVC:vmicheartbeat/vmicrdv C:\windows\System32\svchost.exe -k ICService
1448 NT AUTHORITY\SYSTEM 2124/7748 85788/86300 4240/4296 13 155 0.0 2024-08-01 08:04:23 657973 SVC:DiagTrack C:\windows\System32\svchost.exe -k utcsvc
1600 NT AUTHORITY\NETWORK SERVICE 5684/9496 44860/48444 3368/3772 14 269 0.0 2024-08-01 08:05:43 657972 SVC:TermService C:\windows\System32\svchost.exe -k termsvcs
1492 AZELIGO\eligo 172/3272 25920/27228 1036/1036 5 32 0.0 2024-08-01 08:04:23 657973 conhost \??\C:\windows\system32\conhost.exe "175265836042567919317875541911998757138317785573-5047531801595695337174937984
1476 AZELIGO\eligo 64/5636 435384/442296 5936/6152 10 110 0.0 2024-08-01 08:04:23 657973 rsync rsync.exe -v --daemon --config=deltacd.conf --no-detach
|