Wed 10 Dec 21:39:45 2025 - Processes ok
No process checks defined
PID User WorkingSet/Peak VirtualMem/Peak PagedMem/Peak NPS Handles %CPU Start Time Elapsed Name Command
1232 NT AUTHORITY\LOCAL SERVICE 22544/36188 2151790520/2152303084 17616/32196 16 399 2.3 2025-12-07 22:42:02 4257 SVC:EventLog C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog
4308 NT AUTHORITY\SYSTEM 141140/163204 2152379076/2152420420 98208/141092 36 535 1.4 2025-12-07 22:42:13 4257 powershell "C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" -ExecutionPolicy RemoteSigned -NoLogo -NonInteractive -NoProfile -WindowStyle Hidden -File "C:\program files\xymon\xymonclient.ps1"
3004 NT AUTHORITY\SYSTEM 1086264/1086264 5406300/5409708 1096320/1096320 29 338 1.0 2025-12-07 22:42:10 4257 SVC:Mesh Agent "C:\Program Files\Mesh Agent\MeshAgent.exe"
2480 Unknown 220236/1034716 2152814480/2153865752 278548/1067048 236 905 0.5 2025-12-07 22:42:11 4257 SVC:WinDefend
1576 NT AUTHORITY\NETWORK SERVICE 37408/52176 2151828004/2151863116 20488/28700 25 2422 0.3 2025-12-09 00:13:02 2726 WmiPrvSE C:\Windows\system32\wbem\wmiprvse.exe -secured -Embedding
2528 NT AUTHORITY\SYSTEM 24600/31392 2151832088/2151842860 14172/19572 18 443 0.2 2025-12-07 22:42:11 4257 SVC:Winmgmt C:\Windows\system32\svchost.exe -k netsvcs -p -s Winmgmt
2612 NT AUTHORITY\LOCAL SERVICE 21500/24680 2151827408/2151968384 17376/19008 17 319 0.1 2025-12-07 22:44:14 4255 SVC:DPS C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS
648 NT AUTHORITY\SYSTEM 86660/87132 2152142600/2152161848 75964/86840 182 1997 0.1 2025-12-07 22:41:57 4257 SVC:Kdc/KeyIso/Netlogon/NTDS/SamSs C:\Windows\system32\lsass.exe
4 Unknown 140/1872 3968/15292 40/64 0 2501 0.1 2025-12-07 22:41:55 4257 System
640 Unknown 14248/16304 2151763000/2152035204 5608/12112 15 652 0.1 2025-12-07 22:41:57 4257 services
900 NT AUTHORITY\NETWORK SERVICE 18120/18212 2151773140/2151776220 10484/10604 22 1022 0.1 2025-12-07 22:42:00 4257 SVC:RpcEptMapper/RpcSs C:\Windows\system32\svchost.exe -k RPCSS -p
1152 NT AUTHORITY\NETWORK SERVICE 10668/11288 2151768028/2151771612 3528/4168 18 307 0.0 2025-12-07 22:42:02 4257 SVC:Dnscache C:\Windows\system32\svchost.exe -k NetworkService -p -s Dnscache
6236 NT AUTHORITY\LOCAL SERVICE 12836/13744 2151760156/2151763528 4080/4796 13 184 0.0 2025-12-10 20:05:09 94 WmiPrvSE C:\Windows\system32\wbem\wmiprvse.exe -secured -Embedding
2872 NT AUTHORITY\SYSTEM 130020/130440 2151894752/2151897300 130948/132432 6952 10450 0.0 2025-12-07 22:42:10 4257 SVC:DNS C:\Windows\system32\dns.exe
2816 NT AUTHORITY\SYSTEM 28352/28428 2152081388/2152082412 19544/19632 37 461 0.0 2025-12-07 22:42:10 4257 SVC:DFSR C:\Windows\system32\DFSRs.exe
2752 NT AUTHORITY\SYSTEM 45972/46064 4822504/4826108 36288/37120 32 775 0.0 2025-12-07 22:42:10 4257 SVC:ADWS C:\Windows\ADWS\Microsoft.ActiveDirectory.WebServices.exe
4324 NT AUTHORITY\SYSTEM 14652/14652 2151768496/2151769520 7408/7408 10 150 0.0 2025-12-07 22:42:13 4257 conhost \??\C:\Windows\system32\conhost.exe 0x4
1408 NT AUTHORITY\SYSTEM 14824/15352 2151771796/2151778224 3480/3744 18 321 0.0 2025-12-07 22:42:02 4257 SVC:gpsvc C:\Windows\system32\svchost.exe -k netsvcs -p -s gpsvc
2776 NT AUTHORITY\NETWORK SERVICE 15000/16296 2151908624/2151913732 4188/5552 27 383 0.0 2025-12-07 22:42:10 4257 SVC:CryptSvc C:\Windows\system32\svchost.exe -k NetworkService -p -s CryptSvc
960 NT AUTHORITY\SYSTEM 11316/11356 2151759944/2151765692 2772/2964 12 340 0.0 2025-12-07 22:42:00 4257 SVC:LSM C:\Windows\system32\svchost.exe -k DcomLaunch -p -s LSM
496 NT AUTHORITY\NETWORK SERVICE 89024/89180 2151953716/2151969332 73520/73808 31 894 0.0 2025-12-07 22:42:01 4257 SVC:TermService C:\Windows\System32\svchost.exe -k termsvcs -s TermService
368 Window Manager\DWM-1 41292/44720 2151916112/2151924704 17880/23940 28 623 0.0 2025-12-07 22:42:01 4257 dwm "dwm.exe"
424 Unknown 6528/6632 2151774140/2151775612 2088/2240 21 535 0.0 2025-12-07 22:41:57 4257 csrss
72 NT AUTHORITY\SYSTEM 45888/53340 2151966376/2151971060 10456/18000 26 451 0.0 2025-12-07 22:42:01 4257 LogonUI "LogonUI.exe" /flags:0x2 /state0:0xa3bd1055 /state1:0x41c64e6d
3180 NT AUTHORITY\LOCAL SERVICE 31836/31836 2151829980/2151833564 3308/3524 13 329 0.0 2025-12-07 22:53:05 4246 WUDFHost "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-50f668da-d58d-47d1-9b3d-d5c67a07a594 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-5d8c15f8-8019-4e70-9f84-54cb77b23259 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-e8023ac2-3cb5-4100-a056-1541edcb08b5 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-6a3ae6eb-7e98-4c08-893c-9714fe936434 -LifetimeId:435b0074-0a23-4646-aa0a-6c6db45c79f5 -DeviceGroupId: -HostArg:0
3312 Window Manager\DWM-2 78244/86812 2151992400/2152004232 20620/26980 35 741 0.0 2025-12-07 22:53:05 4246 dwm "dwm.exe"
3344 TWILIGHT0\Administrator 11704/11744 2151808160/2151820976 2396/2524 13 330 0.0 2025-12-07 22:53:08 4246 rdpclip rdpclip
3540 NT AUTHORITY\SYSTEM 15944/16472 2151778392/2151789892 3368/4016 15 266 0.0 2025-12-07 22:42:43 4257 SVC:StorSvc C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted -p
3640 NT AUTHORITY\SYSTEM 8888/22248 2151746104/2151762532 3964/9844 8 119 0.0 2025-12-07 22:42:12 4257 AggregatorHost AggregatorHost.exe
3752 NT AUTHORITY\SYSTEM 12876/16500 2151761168/2151772892 4484/7904 10 162 0.0 2025-12-07 22:53:07 4246 SVC:StateRepository C:\Windows\system32\svchost.exe -k appmodel -p -s StateRepository
3416 TWILIGHT0\Administrator 2812/37884 2185567488/2185577432 13564/14232 35 484 0.0 2025-12-07 22:53:24 4246 mmc "C:\Windows\system32\mmc.exe" "C:\Windows\system32\services.msc"
3496 Font Driver Host\UMFD-0 4300/4300 2151745744/2151747280 1340/1428 6 39 0.0 2025-12-07 22:42:12 4257 fontdrvhost "fontdrvhost.exe"
3504 Font Driver Host\UMFD-1 4192/4192 2151745292/2151746828 1276/1360 6 39 0.0 2025-12-07 22:42:12 4257 fontdrvhost "fontdrvhost.exe"
3116 TWILIGHT0\Administrator 13544/13632 2151938512/2151941084 3948/4228 22 222 0.0 2025-12-07 22:53:08 4246 taskhostw taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
2848 NT AUTHORITY\SYSTEM 33256/57096 2151845364/2151857852 14916/39736 24 562 0.0 2025-12-07 22:42:10 4257 SVC:DiagTrack C:\Windows\System32\svchost.exe -k utcsvc -p
6684 TWILIGHT0\Administrator 14000/17144 2151797244/2151812920 2388/3392 13 229 0.0 2025-12-07 22:53:15 4246 RuntimeBroker C:\Windows\System32\RuntimeBroker.exe -Embedding
4528 NT AUTHORITY\SYSTEM 12764/12852 2151906764/2151912560 3564/3764 18 213 0.0 2025-12-07 22:42:14 4257 dllhost C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
7080 TWILIGHT0\Administrator 16696/16820 2151794692/2151801024 2584/2920 12 198 0.0 2025-12-07 22:53:18 4246 SVC:cbdhsvc_d0918 C:\Windows\system32\svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc
2936 NT AUTHORITY\SYSTEM 6500/6540 2151744944/2151750052 1828/2204 13 153 0.0 2025-12-07 22:42:10 4257 SVC:IsmServ C:\Windows\System32\ismserv.exe
3044 NT AUTHORITY\LOCAL SERVICE 7588/7620 2151752856/2151756956 1636/1900 42 156 0.0 2025-12-07 22:42:10 4257 SVC:SstpSvc C:\Windows\system32\svchost.exe -k LocalService -p -s SstpSvc
3100 NT AUTHORITY\SYSTEM 6540/6764 4267516/4271612 1860/2168 8 124 0.0 2025-12-07 22:42:11 4257 SVC:XymonPSClient "C:\program files\xymon\nssm.exe"
2972 Unknown 22944/23416 2151793004/2151799224 9524/9876 18 502 0.0 2025-12-07 22:42:10 4257 SVC:MDCoreSvc
3020 NT AUTHORITY\SYSTEM 13468/13468 4330880/4337024 2132/2240 12 180 0.0 2025-12-07 22:42:10 4257 SVC:QEMU-GA "C:\Program Files\Qemu-ga\qemu-ga.exe" -d --retry-path
3764 NT AUTHORITY\SYSTEM 13440/13472 2151774860/2151779468 3288/3604 24 382 0.0 2025-12-07 22:42:13 4257 SVC:RasMan C:\Windows\System32\svchost.exe -k netsvcs
5148 TWILIGHT0\Administrator 12784/14288 2151928172/2151941124 3776/6104 18 230 0.0 2025-12-07 22:53:18 4246 dllhost C:\Windows\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
5228 TWILIGHT0\Administrator 20720/20736 2151819404/2151821972 3572/3684 16 408 0.0 2025-12-07 22:53:09 4246 ctfmon "ctfmon.exe"
5140 NT AUTHORITY\SYSTEM 7812/7896 2151747280/2151751300 1512/1744 10 174 0.0 2025-12-07 22:53:08 4246 SVC:TabletInputService C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TabletInputService
5960 NT AUTHORITY\SYSTEM 6576/6696 2151744176/2151751268 1240/1464 8 124 0.0 2025-12-07 22:53:25 4246 SVC:Appinfo C:\Windows\system32\svchost.exe -k netsvcs -p -s Appinfo
4976 Unknown 11716/11724 2151775720/2151778800 3856/4324 38 204 0.0 2025-12-07 22:42:22 4257 SVC:WdNisSvc
5236 TWILIGHT0\Administrator 18532/21868 2151838004/2151840564 5392/6036 19 354 0.0 2025-12-10 04:30:25 1029 taskhostw taskhostw.exe
5856 NT AUTHORITY\SYSTEM 10896/10928 2152032652/2152037772 6104/6428 16 194 0.0 2025-12-08 06:42:04 3777 SVC:DsSvc C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s DsSvc
5940 TWILIGHT0\Administrator 16992/18376 2151796156/2151806268 2520/3440 12 199 0.0 2025-12-09 06:41:47 2338 RuntimeBroker C:\Windows\System32\RuntimeBroker.exe -Embedding
5556 TWILIGHT0\Administrator 22452/25360 2151822060/2151853148 3776/5296 16 263 0.0 2025-12-07 22:53:12 4246 RuntimeBroker C:\Windows\System32\RuntimeBroker.exe -Embedding
5352 NT AUTHORITY\SYSTEM 10220/10260 2151753716/2151756788 1880/2076 10 153 0.0 2025-12-07 22:53:09 4246 SVC:camsvc C:\Windows\system32\svchost.exe -k appmodel -p -s camsvc
5524 TWILIGHT0\Administrator 22272/92488 2152198460/2152271996 35104/43520 73 1749 0.0 2025-12-07 22:53:10 4246 explorer "C:\Windows\Explorer.EXE" /NoUACCheck
4840 NT AUTHORITY\LOCAL SERVICE 13868/14016 2151776888/2151782528 2608/2980 14 244 0.0 2025-12-07 22:44:13 4255 SVC:CDPSvc C:\Windows\system32\svchost.exe -k LocalService -p -s CDPSvc
3820 TWILIGHT0\Administrator 27000/27816 2151849700/2151858688 5120/5600 17 527 0.0 2025-12-07 22:53:08 4246 sihost sihost.exe
6176 TWILIGHT0\Administrator 165860/187600 2186151592/2186182448 91832/112472 79 1191 0.0 2025-12-07 22:53:13 4246 SearchApp "C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe" -ServerName:CortanaUI.AppX8z9r6jm96hw4bsbneegw0kyxx296wr9t.mca
3816 Unknown 6860/6924 2151785632/2151788036 1964/2204 15 333 0.0 2025-12-07 22:53:05 4246 csrss
6308 TWILIGHT0\Administrator 39728/43820 2151915320/2151935748 12288/13776 25 554 0.0 2025-12-07 22:53:13 4246 RuntimeBroker C:\Windows\System32\RuntimeBroker.exe -Embedding
3772 NT AUTHORITY\SYSTEM 11888/12136 2151760416/2151764300 2676/2888 17 218 0.0 2025-12-07 22:42:13 4257 SVC:vds C:\Windows\System32\vds.exe
6088 TWILIGHT0\Administrator 43392/44532 2151982780/2151992120 10132/10420 23 548 0.0 2025-12-07 22:53:12 4246 TextInputHost "C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe" -ServerName:InputApp.AppXjd5de1g66v206tj52m9d0dtpppx4cgpn.mca
6032 NT AUTHORITY\LOCAL SERVICE 20528/20792 2151785908/2151792080 3956/4416 17 294 0.0 2025-12-08 00:47:05 4132 SVC:LicenseManager C:\Windows\System32\svchost.exe -k LocalService -p -s LicenseManager
4692 NT AUTHORITY\SYSTEM 9784/16224 2151774632/2151797588 1856/2256 11 238 0.0 2025-12-07 22:53:05 4246 winlogon winlogon.exe
4516 NT AUTHORITY\LOCAL SERVICE 7556/7660 2151745604/2151752772 1372/1796 9 127 0.0 2025-12-07 22:42:14 4257 SVC:DispBrokerDesktopSvc C:\Windows\system32\svchost.exe -k LocalService -p -s DispBrokerDesktopSvc
4464 TWILIGHT0\Administrator 27920/29756 2151836356/2151851240 5788/6648 17 343 0.0 2025-12-07 22:53:08 4246 SVC:WpnUserService_d0918 C:\Windows\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService
6064 TWILIGHT0\Administrator 63632/66388 2151990744/2152062412 19272/22012 28 562 0.0 2025-12-07 22:53:11 4246 StartMenuExperienceHost "C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
1100 NT AUTHORITY\SYSTEM 17200/20524 2152073016/2152081768 8300/11828 20 291 0.0 2025-12-07 22:44:16 4255 SVC:UALSVC C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s UALSVC
1104 NT AUTHORITY\LOCAL SERVICE 8028/8128 2151753304/2151757912 1936/2364 11 225 0.0 2025-12-07 22:42:02 4257 SVC:Dhcp C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp
1184 TWILIGHT0\Administrator 50388/50964 2151995528/2152002760 10864/11700 28 620 0.0 2025-12-09 06:41:46 2338 ShellExperienceHost "C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
1032 NT AUTHORITY\LOCAL SERVICE 12452/12508 2151761360/2151764432 1752/2080 10 176 0.0 2025-12-07 22:42:02 4257 SVC:TimeBrokerSvc C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
1040 NT AUTHORITY\SYSTEM 10168/10268 2151756396/2151760492 1904/2272 12 213 0.0 2025-12-07 22:42:02 4257 SVC:NcbService C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService
1068 NT AUTHORITY\SYSTEM 12648/14108 2151765836/2151776216 2620/3080 12 219 0.0 2025-12-07 22:53:08 4246 SVC:TokenBroker C:\Windows\system32\svchost.exe -k netsvcs -p -s TokenBroker
1380 NT AUTHORITY\SYSTEM 11872/12980 2151769000/2151777024 3800/4304 13 260 0.0 2025-12-07 22:44:15 4255 SVC:PcaSvc C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc
1452 NT AUTHORITY\SYSTEM 8544/8584 2151764680/2151767752 1676/1888 10 183 0.0 2025-12-07 22:42:02 4257 SVC:UmRdpService C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s UmRdpService
1476 NT AUTHORITY\SYSTEM 10288/10316 2151759240/2151763144 2224/2432 16 243 0.0 2025-12-07 22:42:03 4257 SVC:SessionEnv C:\Windows\System32\svchost.exe -k netsvcs -p -s SessionEnv
1252 NT AUTHORITY\LOCAL SERVICE 20416/21900 2151786100/2151791028 10480/12360 32 415 0.0 2025-12-07 22:42:02 4257 SVC:BFE/mpssvc C:\Windows\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
1304 NT AUTHORITY\SYSTEM 7076/7152 2155941168/2155944752 1592/1868 9 140 0.0 2025-12-07 22:42:10 4257 SVC:SysMain C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain
1332 NT AUTHORITY\NETWORK SERVICE 13120/13264 2151779180/2151788916 4024/4740 18 396 0.0 2025-12-07 22:42:02 4257 SVC:NlaSvc C:\Windows\System32\svchost.exe -k NetworkService -p -s NlaSvc
1020 TWILIGHT0\Administrator 1216/12680 2151856112/2151858160 3132/3200 13 204 0.0 2025-12-07 22:53:25 4246 AzureArcSysTray "C:\Windows\AzureArcSetup\Systray\AzureArcSysTray.exe"
516 Unknown 6020/9168 2151766140/2151770236 1824/2032 11 171 0.0 2025-12-07 22:41:57 4257 csrss
592 NT AUTHORITY\SYSTEM 10564/15172 2151811808/2151824612 2500/6488 12 210 0.0 2025-12-07 22:41:57 4257 winlogon winlogon.exe
664 NT AUTHORITY\LOCAL SERVICE 7896/8192 2151744860/2151749468 3292/3752 16 131 0.0 2025-12-07 22:42:01 4257 SVC:nsi C:\Windows\system32\svchost.exe -k LocalService -p -s nsi
100 Unknown 66900/159964 82816/185152 1804/50740 7 0 0.0 2025-12-07 22:41:52 4258 Registry
316 Unknown 1288/1316 2151718544/2151726580 1080/1148 3 60 0.0 2025-12-07 22:41:55 4257 smss
500 Unknown 7280/7364 2151748856/2151761280 1356/1968 11 152 0.0 2025-12-07 22:41:57 4257 wininit
968 TWILIGHT0\Administrator 13520/13728 2151786908/2151794084 2748/3184 13 222 0.0 2025-12-07 22:53:08 4246 SVC:CDPUserSvc_d0918 C:\Windows\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc
972 NT AUTHORITY\NETWORK SERVICE 11500/12396 2151764268/2151767148 2984/3940 14 240 0.0 2025-12-07 22:44:15 4255 SVC:MSDTC C:\Windows\System32\msdtc.exe
1004 Font Driver Host\UMFD-2 8468/8468 2151887536/2151888108 3584/3584 8 39 0.0 2025-12-07 22:53:05 4246 fontdrvhost "fontdrvhost.exe"
724 NT AUTHORITY\LOCAL SERVICE 8692/8692 2151755740/2151757508 1788/1968 14 224 0.0 2025-12-07 22:42:01 4257 SVC:W32Time C:\Windows\system32\svchost.exe -k LocalService -s W32Time
784 NT AUTHORITY\LOCAL SERVICE 5748/5764 2151745204/2151746740 1248/1424 8 119 0.0 2025-12-07 22:42:01 4257 SVC:lmhosts C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
852 NT AUTHORITY\SYSTEM 23424/23608 2151790592/2151800804 6956/7408 20 1013 0.0 2025-12-07 22:42:00 4257 SVC:BrokerInfrastructure/DcomLaunch/PlugPlay/Power/SystemEventsBroker C:\Windows\system32\svchost.exe -k DcomLaunch -p
2236 NT AUTHORITY\SYSTEM 12000/12120 2151754856/2151759976 1524/1844 9 139 0.0 2025-12-07 22:42:11 4257 SVC:WpnService C:\Windows\system32\svchost.exe -k netsvcs -p -s WpnService
2468 NT AUTHORITY\SYSTEM 8488/8544 2151749456/2151750484 2280/2432 12 194 0.0 2025-12-07 22:42:11 4257 SVC:Dfs C:\Windows\system32\dfssvc.exe
0 8/8 8/8 60/60 0 0 0.0 0 Idle
2152 TWILIGHT0\Administrator 85364/131956 5037152/5054736 115396/125580 36 1769 0.0 2025-12-07 22:53:12 4246 ServerManager "C:\Windows\system32\ServerManager.exe"
2208 TWILIGHT0\Administrator 15996/29412 2151894476/2151921848 6220/6848 25 369 0.0 2025-12-07 22:55:09 4244 mmc "C:\Windows\system32\mmc.exe" C:\Windows\system32\devmgmt.msc
2216 NT AUTHORITY\SYSTEM 10988/11072 2152809136/2152817204 2640/3172 16 367 0.0 2025-12-07 22:42:03 4257 SVC:iphlpsvc C:\Windows\System32\svchost.exe -k NetSvcs -p -s iphlpsvc
2664 NT AUTHORITY\SYSTEM 12840/13164 2151764356/2151770416 2764/3468 14 241 0.0 2025-12-07 22:44:18 4255 SVC:UsoSvc C:\Windows\system32\svchost.exe -k netsvcs -p -s UsoSvc
2732 NT AUTHORITY\SYSTEM 19964/20244 2151803480/2151809792 6076/6384 25 491 0.0 2025-12-07 22:42:10 4257 SVC:Spooler C:\Windows\System32\spoolsv.exe
2760 NT AUTHORITY\LOCAL SERVICE 6504/6520 2151753084/2151755132 1420/1472 8 157 0.0 2025-12-07 22:42:10 4257 SVC:CoreMessagingRegistrar C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork -p
2544 Unknown 12436/12800 2151765136/2151766672 2628/2776 11 215 0.0 2025-12-09 14:42:07 1857 SVC:SecurityHealthService
2568 NT AUTHORITY\NETWORK SERVICE 17456/23556 2151809448/2151814420 4700/10340 17 278 0.0 2025-12-07 22:42:11 4257 SVC:WinRM C:\Windows\System32\svchost.exe -k NetworkService -p -s WinRM
2652 NT AUTHORITY\SYSTEM 9460/9492 2151753904/2151755972 2356/2440 11 210 0.0 2025-12-07 22:42:10 4257 SVC:LanmanServer C:\Windows\System32\svchost.exe -k smbsvcs -s LanmanServer
2108 NT AUTHORITY\SYSTEM 9476/9556 2151754224/2151762432 2264/2716 10 204 0.0 2025-12-07 22:42:03 4257 SVC:UserManager C:\Windows\system32\svchost.exe -k netsvcs -p -s UserManager
1556 NT AUTHORITY\LOCAL SERVICE 11140/11368 2151760092/2151773404 2724/3576 14 434 0.0 2025-12-07 22:42:02 4257 SVC:netprofm C:\Windows\System32\svchost.exe -k LocalService -p -s netprofm
1632 NT AUTHORITY\SYSTEM 16632/16880 2151789748/2151796308 5696/6140 20 397 0.0 2025-12-07 22:42:02 4257 SVC:Schedule C:\Windows\system32\svchost.exe -k netsvcs -p -s Schedule
1732 NT AUTHORITY\SYSTEM 8708/8824 2151754264/2151759436 1836/2152 12 178 0.0 2025-12-07 22:42:02 4257 SVC:SENS C:\Windows\system32\svchost.exe -k netsvcs -p -s SENS
1496 NT AUTHORITY\SYSTEM 13264/13368 2151775316/2151779924 2772/3040 12 210 0.0 2025-12-07 22:42:02 4257 SVC:ProfSvc C:\Windows\system32\svchost.exe -k netsvcs -p -s ProfSvc
1512 NT AUTHORITY\LOCAL SERVICE 8352/8484 2151754384/2151760520 1900/2184 10 177 0.0 2025-12-07 22:42:02 4257 SVC:EventSystem C:\Windows\system32\svchost.exe -k LocalService -p -s EventSystem
1532 NT AUTHORITY\SYSTEM 6176/6196 2151747692/2151750256 1232/1368 8 177 0.0 2025-12-07 22:42:02 4257 SVC:Themes C:\Windows\System32\svchost.exe -k netsvcs -p -s Themes
1884 NT AUTHORITY\NETWORK SERVICE 10460/10504 2151761416/2151766536 2276/2452 13 238 0.0 2025-12-07 22:42:02 4257 SVC:LanmanWorkstation C:\Windows\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation
1944 NT AUTHORITY\LOCAL SERVICE 7300/7520 2151786712/2151791432 1660/1920 10 166 0.0 2025-12-07 22:42:02 4257 SVC:FontCache C:\Windows\system32\svchost.exe -k LocalService -p -s FontCache
2044 NT AUTHORITY\LOCAL SERVICE 7964/8180 2151750548/2151754868 1832/2376 10 174 0.0 2025-12-07 22:42:03 4257 SVC:WinHttpAutoProxySvc C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
1812 NT AUTHORITY\SYSTEM 7192/7192 2151752980/2151754516 1552/1648 9 185 0.0 2025-12-07 22:42:02 4257 SVC:CertPropSvc C:\Windows\system32\svchost.exe -k netsvcs -s CertPropSvc
1824 NT AUTHORITY\LOCAL SERVICE 9216/9400 2151751380/2151758548 1900/2660 13 291 0.0 2025-12-07 22:42:02 4257 SVC:Wcmsvc C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted -p
1876 NT AUTHORITY\SYSTEM 12976/13044 2151762868/2151766964 1996/2240 12 186 0.0 2025-12-07 22:42:02 4257 SVC:ShellHWDetection C:\Windows\System32\svchost.exe -k netsvcs -p -s ShellHWDetection
|