clear lun 15 lug 12:12:54 2024 - Processes ok
No process checks defined
PID User WorkingSet/Peak VirtualMem/Peak PagedMem/Peak NPS Handles %CPU Start Time Elapsed Name Command
876 NT AUTHORITY\SERVIZIO LOCALE 33308/40192 2147565184/2147939248 28572/28936 19 493 0,0 2024-05-13 17:04:55 90428 SVC:Dhcp/EventLog/lmhosts/Wcmsvc C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
2356 NT AUTHORITY\SYSTEM 252956/274644 2148294704/2148297824 243772/265548 35 422 0,0 2024-05-13 17:05:07 90428 powershell "C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" -ExecutionPolicy RemoteSigned -NoLogo -NonInteractive -NoProfile -WindowStyle Hidden -File "C:\Program Files\xymonclient\xymonclient.ps1"
2264 NT AUTHORITY\SYSTEM 3376/3376 2147514860/2147514860 928/928 5 49 0,0 2024-05-13 17:05:06 90428 conhost \??\C:\Windows\system32\conhost.exe 0x4
2256 Unknown 24200/24216 192580/192912 1992/2048 11 147 0,0 2024-06-28 15:22:40 24290 csrss
2272 NT AUTHORITY\SYSTEM 16588/121496 89312/320720 4932/8116 23 390 0,0 2024-05-13 17:05:06 90428 SVC:VeeamDeploySvc "C:\Windows\Veeam\Backup\VeeamDeploymentSvc.exe" -port 6160
2552 NT AUTHORITY\SYSTEM 5496/5532 2147518156/2147519196 1464/1528 9 115 0,0 2024-06-21 15:48:31 34344 rhs C:\Windows\Cluster\rhs.exe -key SYSTEM\CurrentControlSet\Services\ClusSvc\Parameters\Rhs\752b47a0-1fef-492a-96a4-044664c555b3 -parentPid 1968 -initEvent 4f6827b3-3939-4578-ac7f-572ca6e7eae7 -replyEndpoint OLEBD74CA138E338423ED27E2D26C17
2980 NT AUTHORITY\SYSTEM 5820/5856 2147519540/2147520580 1600/1664 9 128 0,0 2024-06-21 15:48:31 34344 rhs C:\Windows\Cluster\rhs.exe -key SYSTEM\CurrentControlSet\Services\ClusSvc\Parameters\Rhs\9831daa1-c9b6-4d69-9f3c-c972ccd0a336 -parentPid 1968 -initEvent 8e1282e8-900f-45db-b9f5-197690528ee8 -replyEndpoint OLEBD74CA138E338423ED27E2D26C17
1968 NT AUTHORITY\SYSTEM 25156/25628 2147580944/2147584648 13504/14280 37 768 0,0 2024-06-21 15:46:28 34346 SVC:ClusSvc C:\Windows\Cluster\clussvc.exe -s
1772 NT SERVICE\MsDtsServer110 20908/20940 21372832/21397776 89492/89580 28 247 0,0 2024-05-13 17:05:00 90428 SVC:MsDtsServer110 "C:\Program Files\Microsoft SQL Server\110\DTS\Binn\MsDtsSrvr.exe"
1608 NT AUTHORITY\SYSTEM 36176/36488 92636/95236 27608/28172 17 166 0,0 2024-05-13 17:04:59 90428 SVC:IISADMIN C:\Windows\system32\inetsrv\inetinfo.exe
2036 NT SERVICE\PBIEgwService 422432/532932 837684/1248428 437916/509764 94 1473 0,0 2024-05-13 17:05:03 90428 SVC:PBIEgwService "C:\Program Files\On-premises data gateway\Microsoft.PowerBI.EnterpriseGateway.exe"
2140 NT AUTHORITY\SYSTEM 4300/4428 46884/48948 1508/1676 5 80 0,0 2024-05-13 17:05:06 90428 SVC:XymonPSClient "C:\Program Files\xymonclient\nssm.exe"
2112 NT AUTHORITY\SYSTEM 10476/10512 2147538300/2147538820 6244/6392 17 165 0,0 2024-05-13 17:05:06 90428 SVC:W3SVC/WAS C:\Windows\system32\svchost.exe -k iissvcs
2056 NT AUTHORITY\SYSTEM 14072/14540 2150197604/2150722420 13408/14368 22 322 0,0 2024-05-13 17:05:06 90428 SVC:TrkWks/UALSVC/UmRdpService C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
3328 NT AUTHORITY\SYSTEM 6200/6232 2147520200/2147521240 1680/1744 10 142 0,0 2024-06-21 15:48:31 34344 rhs C:\Windows\Cluster\rhs.exe -key SYSTEM\CurrentControlSet\Services\ClusSvc\Parameters\Rhs\5a1aca52-a9ca-4903-a113-3815ec5e104a -parentPid 1968 -initEvent 450e1717-4be5-4174-8950-6613ad537d8d -replyEndpoint OLEBD74CA138E338423ED27E2D26C17
5872 NT AUTHORITY\SYSTEM 10008/10280 2147529468/2147538976 3312/3932 15 189 0,0 2024-06-21 15:48:29 34344 rhs C:\Windows\Cluster\rhs.exe -key SYSTEM\CurrentControlSet\Services\ClusSvc\Parameters\Rhs\42b7429a-a533-4c73-8706-72bb6704d760 -parentPid 1968 -initEvent 8482edd0-5c11-4c7c-ba2e-51715cd44a13 -replyEndpoint OLEBD74CA138E338423ED27E2D26C17
5712 Window Manager\DWM-2 42744/59892 2147618756/2147636088 13332/23272 20 200 0,0 2024-06-28 15:22:40 24290 dwm "dwm.exe"
5068 NT AUTHORITY\SYSTEM 5472/10996 2147536048/2147542596 1260/1424 7 151 0,0 2024-06-28 15:22:40 24290 winlogon winlogon.exe
5888 DOMAIN\057514 74084/74720 739516/747484 53040/55232 38 339 0,0 2024-06-28 15:23:15 24290 InetMgr "C:\Windows\system32\inetsrv\InetMgr.exe"
6088 NT AUTHORITY\SYSTEM 8276/8312 2147552976/2147556104 2676/2780 12 181 0,0 2024-06-21 15:48:29 34344 rhs C:\Windows\Cluster\rhs.exe -key SYSTEM\CurrentControlSet\Services\ClusSvc\Parameters\Rhs\06e5d1d3-a0f0-4fbe-8fc1-6d844cd24dbc -parentPid 1968 -initEvent 58a526f7-d6a4-4ceb-87dd-c3cabc7de1f0 -replyEndpoint OLEBD74CA138E338423ED27E2D26C17
6000 DOMAIN\057514 77048/87980 2147902456/2147914992 33844/45172 55 1046 0,0 2024-06-28 15:22:54 24290 explorer C:\Windows\Explorer.EXE
5892 NT AUTHORITY\SYSTEM 8200/8228 66028/71212 2180/2248 16 182 0,0 2024-05-30 10:03:34 66369 SVC:VeeamTransportSvc "C:\Program Files (x86)\Veeam\Backup Transport\VeeamTransportSvc.exe"
3780 NT AUTHORITY\SERVIZIO DI RETE 18948/43972 2147616464/2147670568 12596/38788 34 591 0,0 2024-05-13 17:05:19 90428 SVC:TermService C:\Windows\System32\svchost.exe -k termsvcs
3344 NT AUTHORITY\SYSTEM 9052/9140 2147552520/2147555008 2816/2948 12 272 0,0 2024-06-21 15:48:31 34344 rhs C:\Windows\Cluster\rhs.exe -key SYSTEM\CurrentControlSet\Services\ClusSvc\Parameters\Rhs\f7afd856-81c8-44b9-ae2a-28c5246009b6 -parentPid 1968 -initEvent df201a9d-38bf-4885-9bb4-543ab6c71e7e -replyEndpoint OLEBD74CA138E338423ED27E2D26C17
3336 NT AUTHORITY\SERVIZIO DI RETE 7332/7780 2147527348/2147528388 2540/2732 15 179 0,0 2024-05-13 17:07:19 90426 SVC:MSDTC C:\Windows\System32\msdtc.exe
3884 NT AUTHORITY\SERVIZIO DI RETE 5256/5944 2147506936/2147508228 1728/2192 8 109 0,0 2024-05-13 17:05:19 90428 SVC:PolicyAgent C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
4824 NT AUTHORITY\SYSTEM 87884/88848 745400/799656 52364/53864 64 955 0,0 2024-05-30 10:10:22 66362 SVC:VeeamEndpointBackupSvc "C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Service.exe"
4744 NT AUTHORITY\SYSTEM 9288/9820 2147554944/2147563784 3192/3844 14 210 0,0 2024-06-21 15:48:29 34344 rhs C:\Windows\Cluster\rhs.exe -key SYSTEM\CurrentControlSet\Services\ClusSvc\Parameters\Rhs\707e4145-f674-455c-9a2c-d2b3e3c7e440 -parentPid 1968 -initEvent 742a59d0-0d2a-4a03-97bc-92ec6c2dcb2e -replyEndpoint OLEBD74CA138E338423ED27E2D26C17
4208 DOMAIN\057514 10016/28308 2148756756/2148794852 3728/22320 17 239 0,0 2024-06-28 15:22:54 24290 taskhostex taskhostex.exe
616 Unknown 3700/3728 44272/47356 1256/1360 8 94 0,0 2024-05-13 17:04:50 90428 csrss
552 Unknown 4348/4408 52292/53452 1984/2076 14 426 0,0 2024-05-13 17:04:49 90428 csrss
456 NT AUTHORITY\SYSTEM 7476/7532 61536/64120 1772/1960 15 172 0,0 2024-05-30 10:03:34 66369 Veeam.Guest.Interaction.Proxy "C:\Program Files (x86)\Veeam\Backup Transport\GuestInteraction\Veeam.Guest.Interaction.Proxy.exe"
624 NT AUTHORITY\SYSTEM 4288/4304 2147527580/2147532764 1036/1176 8 86 0,0 2024-05-13 17:04:50 90428 wininit wininit.exe
724 NT AUTHORITY\SYSTEM 30644/31256 2147565080/2147568880 21968/23116 34 1192 0,0 2024-05-13 17:04:51 90428 SVC:KeyIso/Netlogon/SamSs C:\Windows\system32\lsass.exe
716 Unknown 12324/14308 2147528460/2150156620 10388/16392 11 295 0,0 2024-05-13 17:04:51 90428 services
668 NT AUTHORITY\SYSTEM 5976/6416 2147541320/2147543968 1396/2756 7 123 0,0 2024-05-13 17:04:51 90428 winlogon winlogon.exe
164 DOMAIN\057514 9116/9148 2147576508/2147578900 2016/2148 12 247 0,0 2024-06-28 15:22:54 24290 rdpclip rdpclip
4 Unknown 280/5180 3392/9472 100/264 0 1110 0,0 2024-05-13 17:04:39 90428 System
0 4/4 64/64 0/0 0 0 0,0 0 Idle
176 NT AUTHORITY\SYSTEM 8556/8624 2147552520/2147554080 2324/2432 12 226 0,0 2024-06-21 15:48:31 34344 rhs C:\Windows\Cluster\rhs.exe -key SYSTEM\CurrentControlSet\Services\ClusSvc\Parameters\Rhs\d6acf2cb-74a1-4748-ba87-6f7558b70e65 -parentPid 1968 -initEvent 4aee3422-8c68-4e23-844d-fee69443d395 -replyEndpoint OLEBD74CA138E338423ED27E2D26C17
408 Unknown 1060/1080 4592/26280 284/384 2 55 0,0 2024-05-13 17:04:39 90428 smss
244 NT AUTHORITY\SYSTEM 2992/2992 2147512704/2147512704 652/652 5 49 0,0 2024-05-30 10:03:34 66369 conhost \??\C:\Windows\system32\conhost.exe 0x4
184 NT AUTHORITY\SYSTEM 8136/8312 53536/63828 2828/3160 12 116 0,0 2024-05-13 17:05:06 90428 SVC:SQLWriter "C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
1488 NT AUTHORITY\SERVIZIO LOCALE 6144/9636 36840/107984 2084/39968 13 119 0,0 2024-05-13 17:05:05 90428 SVC:SQLBrowser "C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe"
1468 NT AUTHORITY\SERVIZIO DI RETE 6292/6308 2147506800/2147507320 4068/4120 34 195 0,0 2024-05-13 17:06:41 90426 SVC:KtmRm C:\Windows\System32\svchost.exe -k NetworkServiceAndNoImpersonation
1352 NT AUTHORITY\SERVIZIO LOCALE 17724/19164 2147550840/2147552648 15172/17136 34 376 0,0 2024-05-13 17:04:58 90428 SVC:BFE/DPS/MpsSvc C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
1524 NT AUTHORITY\SYSTEM 10328/10444 2147562356/2147563868 3752/4000 20 379 0,0 2024-05-13 17:04:58 90428 SVC:Spooler C:\Windows\System32\spoolsv.exe
1592 NT AUTHORITY\SYSTEM 10136/10160 2147532412/2147533416 5408/5460 17 265 0,0 2024-05-13 17:04:59 90428 SVC:ftpsvc C:\Windows\system32\svchost.exe -k ftpsvc
1576 NT AUTHORITY\SYSTEM 10052/10108 2147584264/2147585824 4888/5044 13 197 0,0 2024-05-13 17:04:59 90428 SVC:DiagTrack C:\Windows\System32\svchost.exe -k utcsvc
1556 NT AUTHORITY\SYSTEM 11956/12172 2147542120/2147544720 6140/6688 14 129 0,0 2024-05-13 17:04:59 90428 SVC:AppHostSvc C:\Windows\system32\svchost.exe -k apphost
928 NT AUTHORITY\SYSTEM 26172/29028 2147633352/2147634828 13060/13384 22 325 0,0 2024-05-13 17:04:55 90428 LogonUI "LogonUI.exe" /flags:0x0
832 NT AUTHORITY\SERVIZIO DI RETE 9612/9888 2147522908/2147523948 5408/5660 15 400 0,0 2024-05-13 17:04:54 90428 SVC:RpcEptMapper/RpcSs C:\Windows\system32\svchost.exe -k RPCSS
800 NT AUTHORITY\SYSTEM 11844/11896 2147528944/2147533104 5128/5340 16 396 0,0 2024-05-13 17:04:54 90428 SVC:BrokerInfrastructure/DcomLaunch/LSM/PlugPlay/Power/SystemEventsBroker C:\Windows\system32\svchost.exe -k DcomLaunch
944 Window Manager\DWM-1 25920/26136 2147578544/2147586696 15056/16364 15 184 0,0 2024-05-13 17:04:55 90428 dwm "dwm.exe"
1180 NT AUTHORITY\SERVIZIO DI RETE 31600/57588 2149720028/2149741864 18740/42672 41 726 0,0 2024-05-13 17:04:57 90428 SVC:CryptSvc/Dnscache/LanmanWorkstation/NlaSvc/WinRM C:\Windows\system32\svchost.exe -k NetworkService
1104 NT AUTHORITY\SERVIZIO LOCALE 17260/18312 2147573160/2147581092 9596/9928 27 471 0,0 2024-05-13 17:04:56 90428 SVC:EventSystem/FontCache/netprofm/nsi/W32Time C:\Windows\system32\svchost.exe -k LocalService
1064 NT AUTHORITY\SYSTEM 57912/320668 2147656920/2149399312 40760/283232 64 1434 0,0 2024-05-13 17:04:56 90428 SVC:Appinfo/BITS/CertPropSvc/gpsvc/IKEEXT/iphlpsvc/LanmanServer/ProfSvc/Schedule/SENS/SessionEnv/ShellHWDetection/Themes/Winmgmt C:\Windows\system32\svchost.exe -k netsvcs
|