Process Details Output
Process Details Output
Process Details Output
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="0"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\cimv2:Win32_Process.Handle="0"
Caption : System Idle Process
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230717120022.665623+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : System Idle Process
ExecutablePath :
ExecutionState :
Handle : 0
HandleCount : 0
InstallDate :
KernelModeTime : 23545377343750
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : System Idle Process
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 0
OtherTransferCount : 0
PageFaults : 9
PageFileUsage : 60
ParentProcessId : 0
PeakPageFileUsage : 60
PeakVirtualSize : 8192
PeakWorkingSetSize : 12
Priority : 0
PrivatePageCount : 61440
ProcessId : 0
QuotaNonPagedPoolUsage : 1
QuotaPagedPoolUsage : 0
QuotaPeakNonPagedPoolUsage : 1
QuotaPeakPagedPoolUsage : 0
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 0
VirtualSize : 8192
WindowsVersion : 10.0.19045
WorkingSetSize : 8192
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : System Idle Process
Handles : 0
VM : 8192
WS : 8192
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\cimv2:Win32_Process.Handle="4"
Caption : System
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230717120022.665623+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : System
ExecutablePath :
ExecutionState :
Handle : 4
HandleCount : 4186
InstallDate :
KernelModeTime : 54139375000
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : System
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1061458
OtherTransferCount : 198676811
PageFaults : 10454
PageFileUsage : 196
ParentProcessId : 0
PeakPageFileUsage : 268
PeakVirtualSize : 44032000
PeakWorkingSetSize : 9420
Priority : 8
PrivatePageCount : 200704
ProcessId : 4
QuotaNonPagedPoolUsage : 1
QuotaPagedPoolUsage : 0
QuotaPeakNonPagedPoolUsage : 1
QuotaPeakPagedPoolUsage : 0
ReadOperationCount : 86040
ReadTransferCount : 5198138400
SessionId : 0
Status :
TerminationDate :
ThreadCount : 265
UserModeTime : 0
VirtualSize : 4001792
WindowsVersion : 10.0.19045
WorkingSetSize : 32768
WriteOperationCount : 68403
WriteTransferCount : 3976212111
PSComputerName : XOANI-G1-LAPTOP
ProcessName : System
Handles : 4186
VM : 4001792
WS : 32768
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="100"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="100"
Caption : Registry
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230717120020.566602+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : Registry
ExecutablePath :
ExecutionState :
Handle : 100
HandleCount : 0
InstallDate :
KernelModeTime : 59687500
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : Registry
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 4224
OtherTransferCount : 3827
PageFaults : 385080
PageFileUsage : 5948
ParentProcessId : 4
PeakPageFileUsage : 38720
PeakVirtualSize : 178929664
PeakWorkingSetSize : 124564
Priority : 8
PrivatePageCount : 6090752
ProcessId : 100
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 202
QuotaPeakNonPagedPoolUsage : 20
QuotaPeakPagedPoolUsage : 346
ReadOperationCount : 4
ReadTransferCount : 16384
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 0
VirtualSize : 103612416
WindowsVersion : 10.0.19045
WorkingSetSize : 29851648
WriteOperationCount : 57850
WriteTransferCount : 667926528
PSComputerName : XOANI-G1-LAPTOP
ProcessName : Registry
Handles : 0
VM : 103612416
WS : 29851648
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="608"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="608"
Caption : smss.exe
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230717120022.672499+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : smss.exe
ExecutablePath :
ExecutionState :
Handle : 608
HandleCount : 53
InstallDate :
KernelModeTime : 2187500
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : smss.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 559
OtherTransferCount : 10466
PageFaults : 1126
PageFileUsage : 1076
ParentProcessId : 4
PeakPageFileUsage : 1140
PeakVirtualSize : 2203367862272
PeakWorkingSetSize : 1240
Priority : 11
PrivatePageCount : 1101824
ProcessId : 608
QuotaNonPagedPoolUsage : 4
QuotaPagedPoolUsage : 13
QuotaPeakNonPagedPoolUsage : 9
QuotaPeakPagedPoolUsage : 24
ReadOperationCount : 22
ReadTransferCount : 16804
SessionId : 0
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 0
VirtualSize : 2203359723520
WindowsVersion : 10.0.19045
WorkingSetSize : 352256
WriteOperationCount : 13
WriteTransferCount : 24724
PSComputerName : XOANI-G1-LAPTOP
ProcessName : smss.exe
Handles : 53
VM : 2203359723520
WS : 352256
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="864"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="864"
Caption : csrss.exe
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230717120026.703105+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : csrss.exe
ExecutablePath :
ExecutionState :
Handle : 864
HandleCount : 935
InstallDate :
KernelModeTime : 109531250
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : csrss.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 128814
OtherTransferCount : 4120429
PageFaults : 115560
PageFileUsage : 2244
ParentProcessId : 688
PeakPageFileUsage : 2416
PeakVirtualSize : 2203418443776
PeakWorkingSetSize : 6232
Priority : 13
PrivatePageCount : 2297856
ProcessId : 864
QuotaNonPagedPoolUsage : 29
QuotaPagedPoolUsage : 285
QuotaPeakNonPagedPoolUsage : 31
QuotaPeakPagedPoolUsage : 295
ReadOperationCount : 984
ReadTransferCount : 768928
SessionId : 0
Status :
TerminationDate :
ThreadCount : 12
UserModeTime : 24531250
VirtualSize : 2203417591808
WindowsVersion : 10.0.19045
WorkingSetSize : 2768896
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : csrss.exe
Handles : 935
VM : 2203417591808
WS : 2768896
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="948"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="948"
Caption : wininit.exe
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230717120027.047316+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : wininit.exe
ExecutablePath :
ExecutionState :
Handle : 948
HandleCount : 164
InstallDate :
KernelModeTime : 312500
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : wininit.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 379
OtherTransferCount : 4054
PageFaults : 2775
PageFileUsage : 1596
ParentProcessId : 688
PeakPageFileUsage : 2060
PeakVirtualSize : 2203400540160
PeakWorkingSetSize : 7580
Priority : 13
PrivatePageCount : 1634304
ProcessId : 948
QuotaNonPagedPoolUsage : 12
QuotaPagedPoolUsage : 76
QuotaPeakNonPagedPoolUsage : 14
QuotaPeakPagedPoolUsage : 89
ReadOperationCount : 3
ReadTransferCount : 17412
SessionId : 0
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 0
VirtualSize : 2203388485632
WindowsVersion : 10.0.19045
WorkingSetSize : 1372160
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : wininit.exe
Handles : 164
VM : 2203388485632
WS : 1372160
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="960"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="960"
Caption : csrss.exe
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230717120027.055204+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : csrss.exe
ExecutablePath :
ExecutionState :
Handle : 960
HandleCount : 571
InstallDate :
KernelModeTime : 1321562500
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : csrss.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 12267
OtherTransferCount : 94152
PageFaults : 125706
PageFileUsage : 2576
ParentProcessId : 940
PeakPageFileUsage : 10752
PeakVirtualSize : 2203456495616
PeakWorkingSetSize : 23644
Priority : 13
PrivatePageCount : 2637824
ProcessId : 960
QuotaNonPagedPoolUsage : 25
QuotaPagedPoolUsage : 196
QuotaPeakNonPagedPoolUsage : 25
QuotaPeakPagedPoolUsage : 211
ReadOperationCount : 4760
ReadTransferCount : 526358
SessionId : 1
Status :
TerminationDate :
ThreadCount : 12
UserModeTime : 3750000
VirtualSize : 2203441946624
WindowsVersion : 10.0.19045
WorkingSetSize : 3588096
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : csrss.exe
Handles : 571
VM : 2203441946624
WS : 3588096
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="660"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="660"
Caption : winlogon.exe
CommandLine : winlogon.exe
CreationClassName : Win32_Process
CreationDate : 20230717120027.153829+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : winlogon.exe
ExecutablePath : C:\Windows\system32\winlogon.exe
ExecutionState :
Handle : 660
HandleCount : 274
InstallDate :
KernelModeTime : 4062500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : winlogon.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 367
OtherTransferCount : 245590
PageFaults : 46275
PageFileUsage : 2668
ParentProcessId : 940
PeakPageFileUsage : 3792
PeakVirtualSize : 2203431927808
PeakWorkingSetSize : 20984
Priority : 13
PrivatePageCount : 2732032
ProcessId : 660
QuotaNonPagedPoolUsage : 13
QuotaPagedPoolUsage : 145
QuotaPeakNonPagedPoolUsage : 14
QuotaPeakPagedPoolUsage : 165
ReadOperationCount : 19
ReadTransferCount : 267600
SessionId : 1
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 1250000
VirtualSize : 2203421536256
WindowsVersion : 10.0.19045
WorkingSetSize : 2256896
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : winlogon.exe
Handles : 274
VM : 2203421536256
WS : 2256896
Path : C:\Windows\system32\winlogon.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="944"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="944"
Caption : services.exe
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230717120027.183023+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : services.exe
ExecutablePath :
ExecutionState :
Handle : 944
HandleCount : 837
InstallDate :
KernelModeTime : 4600000000
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : services.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 238234
OtherTransferCount : 4032336
PageFaults : 1161343
PageFileUsage : 8412
ParentProcessId : 948
PeakPageFileUsage : 8904
PeakVirtualSize : 2203409162240
PeakWorkingSetSize : 13256
Priority : 9
PrivatePageCount : 8613888
ProcessId : 944
QuotaNonPagedPoolUsage : 13
QuotaPagedPoolUsage : 166
QuotaPeakNonPagedPoolUsage : 16
QuotaPeakPagedPoolUsage : 184
ReadOperationCount : 66294
ReadTransferCount : 9091076
SessionId : 0
Status :
TerminationDate :
ThreadCount : 11
UserModeTime : 5168593750
VirtualSize : 2203392200704
WindowsVersion : 10.0.19045
WorkingSetSize : 10477568
WriteOperationCount : 201
WriteTransferCount : 70508
PSComputerName : XOANI-G1-LAPTOP
ProcessName : services.exe
Handles : 837
VM : 2203392200704
WS : 10477568
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1048"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1048"
Caption : lsass.exe
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230717120027.223146+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : lsass.exe
ExecutablePath :
ExecutionState :
Handle : 1048
HandleCount : 1495
InstallDate :
KernelModeTime : 3039062500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : lsass.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 303211
OtherTransferCount : 19054254
PageFaults : 358986
PageFileUsage : 9520
ParentProcessId : 948
PeakPageFileUsage : 10524
PeakVirtualSize : 2203425914880
PeakWorkingSetSize : 20556
Priority : 9
PrivatePageCount : 9748480
ProcessId : 1048
QuotaNonPagedPoolUsage : 27
QuotaPagedPoolUsage : 154
QuotaPeakNonPagedPoolUsage : 30
QuotaPeakPagedPoolUsage : 157
ReadOperationCount : 7481
ReadTransferCount : 475180
SessionId : 0
Status :
TerminationDate :
ThreadCount : 11
UserModeTime : 4263437500
VirtualSize : 2203424849920
WindowsVersion : 10.0.19045
WorkingSetSize : 12697600
WriteOperationCount : 4451
WriteTransferCount : 601033
PSComputerName : XOANI-G1-LAPTOP
ProcessName : lsass.exe
Handles : 1495
VM : 2203424849920
WS : 12697600
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1176"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1176"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k DcomLaunch -p
CreationClassName : Win32_Process
CreationDate : 20230717120027.594783+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 1176
HandleCount : 1471
InstallDate :
KernelModeTime : 1590625000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1688592
OtherTransferCount : 120409022
PageFaults : 14777766
PageFileUsage : 30220
ParentProcessId : 944
PeakPageFileUsage : 34904
PeakVirtualSize : 2203520905216
PeakWorkingSetSize : 48424
Priority : 8
PrivatePageCount : 30945280
ProcessId : 1176
QuotaNonPagedPoolUsage : 27
QuotaPagedPoolUsage : 968
QuotaPeakNonPagedPoolUsage : 33
QuotaPeakPagedPoolUsage : 977
ReadOperationCount : 49374
ReadTransferCount : 88738876
SessionId : 0
Status :
TerminationDate :
ThreadCount : 23
UserModeTime : 1604375000
VirtualSize : 2203513937920
WindowsVersion : 10.0.19045
WorkingSetSize : 39710720
WriteOperationCount : 111
WriteTransferCount : 1687552
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 1471
VM : 2203513937920
WS : 39710720
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1196"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1196"
Caption : fontdrvhost.exe
CommandLine : "fontdrvhost.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120027.607743+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : fontdrvhost.exe
ExecutablePath : C:\Windows\system32\fontdrvhost.exe
ExecutionState :
Handle : 1196
HandleCount : 36
InstallDate :
KernelModeTime : 5625000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : fontdrvhost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 91
OtherTransferCount : 2336
PageFaults : 2652
PageFileUsage : 2760
ParentProcessId : 948
PeakPageFileUsage : 2788
PeakVirtualSize : 2203428626432
PeakWorkingSetSize : 7048
Priority : 8
PrivatePageCount : 2826240
ProcessId : 1196
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 113
QuotaPeakNonPagedPoolUsage : 8
QuotaPeakPagedPoolUsage : 114
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 2343750
VirtualSize : 2203428102144
WindowsVersion : 10.0.19045
WorkingSetSize : 1363968
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : fontdrvhost.exe
Handles : 36
VM : 2203428102144
WS : 1363968
Path : C:\Windows\system32\fontdrvhost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1200"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1200"
Caption : fontdrvhost.exe
CommandLine : "fontdrvhost.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120027.607745+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : fontdrvhost.exe
ExecutablePath : C:\Windows\system32\fontdrvhost.exe
ExecutionState :
Handle : 1200
HandleCount : 36
InstallDate :
KernelModeTime : 11718750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : fontdrvhost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 142
OtherTransferCount : 3604
PageFaults : 4143
PageFileUsage : 3520
ParentProcessId : 660
PeakPageFileUsage : 3636
PeakVirtualSize : 2203495698432
PeakWorkingSetSize : 9712
Priority : 8
PrivatePageCount : 3604480
ProcessId : 1200
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 237
QuotaPeakNonPagedPoolUsage : 9
QuotaPeakPagedPoolUsage : 237
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 4687500
VirtualSize : 2203495165952
WindowsVersion : 10.0.19045
WorkingSetSize : 3387392
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : fontdrvhost.exe
Handles : 36
VM : 2203495165952
WS : 3387392
Path : C:\Windows\system32\fontdrvhost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1268"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1268"
Caption : WUDFHost.exe
CommandLine : "C:\Windows\System32\WUDFHost.exe" -HostGUID:
{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEve
ntPortName:\UMDFCommunicationPorts\WUDF\HostProcess-
444b6490-c86a-4fb0-8f6d-6f353ed543eb -
SystemEventPortName:\UMDFCommunicationPorts\WUDF\
HostProcess-ed84d43a-0b46-4827-8cb6-e3aa7
7f45c2f -IoCancelEventPortName:\
UMDFCommunicationPorts\WUDF\HostProcess-fa63e29c-9426-40ef
-b7c2-0067f6834fc3 -NonStateChangingEventPortName:\
UMDFCommunicationPorts\WUDF\HostProcess
-cdb1a6a0-6d6d-42c6-b1bb-cf39c76b48ea -
LifetimeId:2d1bba51-b071-4e5b-903a-d6c58452d24b -De
viceGroupId: -HostArg:0
CreationClassName : Win32_Process
CreationDate : 20230717120027.630318+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : WUDFHost.exe
ExecutablePath : C:\Windows\System32\WUDFHost.exe
ExecutionState :
Handle : 1268
HandleCount : 315
InstallDate :
KernelModeTime : 4843750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : WUDFHost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 984
OtherTransferCount : 147686
PageFaults : 11309
PageFileUsage : 4108
ParentProcessId : 944
PeakPageFileUsage : 4332
PeakVirtualSize : 2203412070400
PeakWorkingSetSize : 13600
Priority : 13
PrivatePageCount : 4206592
ProcessId : 1268
QuotaNonPagedPoolUsage : 14
QuotaPagedPoolUsage : 104
QuotaPeakNonPagedPoolUsage : 18
QuotaPeakPagedPoolUsage : 110
ReadOperationCount : 138
ReadTransferCount : 1590572
SessionId : 0
Status :
TerminationDate :
ThreadCount : 12
UserModeTime : 937500
VirtualSize : 2203407876096
WindowsVersion : 10.0.19045
WorkingSetSize : 2740224
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : WUDFHost.exe
Handles : 315
VM : 2203407876096
WS : 2740224
Path : C:\Windows\System32\WUDFHost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1344"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1344"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k RPCSS -p
CreationClassName : Win32_Process
CreationDate : 20230717120027.757778+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 1344
HandleCount : 1885
InstallDate :
KernelModeTime : 2450937500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 14711
OtherTransferCount : 1287994
PageFaults : 225242
PageFileUsage : 18104
ParentProcessId : 944
PeakPageFileUsage : 18284
PeakVirtualSize : 2203434242048
PeakWorkingSetSize : 20456
Priority : 8
PrivatePageCount : 18538496
ProcessId : 1344
QuotaNonPagedPoolUsage : 20
QuotaPagedPoolUsage : 259
QuotaPeakNonPagedPoolUsage : 26
QuotaPeakPagedPoolUsage : 269
ReadOperationCount : 63
ReadTransferCount : 258048
SessionId : 0
Status :
TerminationDate :
ThreadCount : 14
UserModeTime : 3893437500
VirtualSize : 2203431731200
WindowsVersion : 10.0.19045
WorkingSetSize : 16728064
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 1885
VM : 2203431731200
WS : 16728064
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1396"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1396"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k DcomLaunch -p -s
LSM
CreationClassName : Win32_Process
CreationDate : 20230717120027.791343+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 1396
HandleCount : 295
InstallDate :
KernelModeTime : 105000000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 264
OtherTransferCount : 5836
PageFaults : 23396
PageFileUsage : 2732
ParentProcessId : 944
PeakPageFileUsage : 2776
PeakVirtualSize : 2203402444800
PeakWorkingSetSize : 8756
Priority : 8
PrivatePageCount : 2797568
ProcessId : 1396
QuotaNonPagedPoolUsage : 11
QuotaPagedPoolUsage : 119
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 119
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 6
UserModeTime : 84375000
VirtualSize : 2203400679424
WindowsVersion : 10.0.19045
WorkingSetSize : 4116480
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 295
VM : 2203400679424
WS : 4116480
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1440"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1440"
Caption : WUDFHost.exe
CommandLine : "C:\Windows\System32\WUDFHost.exe" -HostGUID:
{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEve
ntPortName:\UMDFCommunicationPorts\WUDF\HostProcess-
37177383-b55c-4fd1-97ba-83514a628abc -
SystemEventPortName:\UMDFCommunicationPorts\WUDF\
HostProcess-e4a23c34-077e-4037-adad-62461
97ea709 -IoCancelEventPortName:\
UMDFCommunicationPorts\WUDF\HostProcess-bf7e8f13-90b6-49c2
-8725-696c6539c846 -NonStateChangingEventPortName:\
UMDFCommunicationPorts\WUDF\HostProcess
-638f4afa-fbb4-43ab-8a66-b2999fedada0 -
LifetimeId:255597cf-8e24-4824-901b-b36c0d8cf954 -De
viceGroupId:WudfDefaultDevicePool -HostArg:0
CreationClassName : Win32_Process
CreationDate : 20230717120027.811374+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : WUDFHost.exe
ExecutablePath : C:\Windows\System32\WUDFHost.exe
ExecutionState :
Handle : 1440
HandleCount : 204
InstallDate :
KernelModeTime : 0
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : WUDFHost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 105
OtherTransferCount : 2062
PageFaults : 1953
PageFileUsage : 1452
ParentProcessId : 944
PeakPageFileUsage : 1644
PeakVirtualSize : 2203385663488
PeakWorkingSetSize : 5824
Priority : 8
PrivatePageCount : 1486848
ProcessId : 1440
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 52
QuotaPeakNonPagedPoolUsage : 8
QuotaPeakPagedPoolUsage : 52
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 6
UserModeTime : 156250
VirtualSize : 2203382517760
WindowsVersion : 10.0.19045
WorkingSetSize : 1269760
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : WUDFHost.exe
Handles : 204
VM : 2203382517760
WS : 1269760
Path : C:\Windows\System32\WUDFHost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1548"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1548"
Caption : dwm.exe
CommandLine : "dwm.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120027.901180+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : dwm.exe
ExecutablePath : C:\Windows\system32\dwm.exe
ExecutionState :
Handle : 1548
HandleCount : 2160
InstallDate :
KernelModeTime : 204218750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : dwm.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 5871
OtherTransferCount : 161386
PageFaults : 198347
PageFileUsage : 108224
ParentProcessId : 660
PeakPageFileUsage : 109760
PeakVirtualSize : 2203837579264
PeakWorkingSetSize : 124336
Priority : 13
PrivatePageCount : 110821376
ProcessId : 1548
QuotaNonPagedPoolUsage : 37
QuotaPagedPoolUsage : 909
QuotaPeakNonPagedPoolUsage : 42
QuotaPeakPagedPoolUsage : 920
ReadOperationCount : 4
ReadTransferCount : 108948
SessionId : 1
Status :
TerminationDate :
ThreadCount : 14
UserModeTime : 333750000
VirtualSize : 2203824463872
WindowsVersion : 10.0.19045
WorkingSetSize : 93646848
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : dwm.exe
Handles : 2160
VM : 2203824463872
WS : 93646848
Path : C:\Windows\system32\dwm.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1672"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1672"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalServiceNetworkRestricted -s BTAGService
CreationClassName : Win32_Process
CreationDate : 20230717120027.995384+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 1672
HandleCount : 169
InstallDate :
KernelModeTime : 781250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 132
OtherTransferCount : 3654
PageFaults : 6274
PageFileUsage : 1808
ParentProcessId : 944
PeakPageFileUsage : 2360
PeakVirtualSize : 2203398062080
PeakWorkingSetSize : 8340
Priority : 8
PrivatePageCount : 1851392
ProcessId : 1672
QuotaNonPagedPoolUsage : 14
QuotaPagedPoolUsage : 73
QuotaPeakNonPagedPoolUsage : 15
QuotaPeakPagedPoolUsage : 74
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 468750
VirtualSize : 2203393343488
WindowsVersion : 10.0.19045
WorkingSetSize : 1933312
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 169
VM : 2203393343488
WS : 1933312
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1680"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1680"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k LocalService -p -s
BthAvctpSvc
CreationClassName : Win32_Process
CreationDate : 20230717120027.995567+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 1680
HandleCount : 134
InstallDate :
KernelModeTime : 1718750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2143
OtherTransferCount : 191734
PageFaults : 11079
PageFileUsage : 1536
ParentProcessId : 944
PeakPageFileUsage : 1904
PeakVirtualSize : 2203395780608
PeakWorkingSetSize : 7320
Priority : 8
PrivatePageCount : 1572864
ProcessId : 1680
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 63
QuotaPeakNonPagedPoolUsage : 13
QuotaPeakPagedPoolUsage : 64
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 2343750
VirtualSize : 2203388964864
WindowsVersion : 10.0.19045
WorkingSetSize : 1835008
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 134
VM : 2203388964864
WS : 1835008
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1696"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1696"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k LocalService -p -s
bthserv
CreationClassName : Win32_Process
CreationDate : 20230717120028.001117+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 1696
HandleCount : 283
InstallDate :
KernelModeTime : 27812500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 8993
OtherTransferCount : 590229
PageFaults : 30485
PageFileUsage : 3148
ParentProcessId : 944
PeakPageFileUsage : 3400
PeakVirtualSize : 2203415846912
PeakWorkingSetSize : 12724
Priority : 8
PrivatePageCount : 3223552
ProcessId : 1696
QuotaNonPagedPoolUsage : 23
QuotaPagedPoolUsage : 105
QuotaPeakNonPagedPoolUsage : 25
QuotaPeakPagedPoolUsage : 110
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 7
UserModeTime : 46093750
VirtualSize : 2203407863808
WindowsVersion : 10.0.19045
WorkingSetSize : 6131712
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 283
VM : 2203407863808
WS : 6131712
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1780"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1780"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k
LocalSystemNetworkRestricted -p -s NcbService
CreationClassName : Win32_Process
CreationDate : 20230717120028.030059+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 1780
HandleCount : 249
InstallDate :
KernelModeTime : 173437500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1374
OtherTransferCount : 110912
PageFaults : 10445
PageFileUsage : 2516
ParentProcessId : 944
PeakPageFileUsage : 2956
PeakVirtualSize : 2203408658432
PeakWorkingSetSize : 10896
Priority : 8
PrivatePageCount : 2576384
ProcessId : 1780
QuotaNonPagedPoolUsage : 13
QuotaPagedPoolUsage : 100
QuotaPeakNonPagedPoolUsage : 16
QuotaPeakPagedPoolUsage : 101
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 372500000
VirtualSize : 2203401478144
WindowsVersion : 10.0.19045
WorkingSetSize : 5271552
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 249
VM : 2203401478144
WS : 5271552
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1840"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1840"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalServiceNetworkRestricted -p -s TimeBrokerSvc
CreationClassName : Win32_Process
CreationDate : 20230717120028.049614+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 1840
HandleCount : 274
InstallDate :
KernelModeTime : 23750000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 231
OtherTransferCount : 5582
PageFaults : 28978
PageFileUsage : 2304
ParentProcessId : 944
PeakPageFileUsage : 2532
PeakVirtualSize : 2203405443072
PeakWorkingSetSize : 12156
Priority : 8
PrivatePageCount : 2359296
ProcessId : 1840
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 116
QuotaPeakNonPagedPoolUsage : 10
QuotaPeakPagedPoolUsage : 117
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 32343750
VirtualSize : 2203402821632
WindowsVersion : 10.0.19045
WorkingSetSize : 4890624
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 274
VM : 2203402821632
WS : 4890624
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1944"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1944"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalServiceNoNetwork -p
CreationClassName : Win32_Process
CreationDate : 20230717120028.090840+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 1944
HandleCount : 158
InstallDate :
KernelModeTime : 16093750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 25
OtherTransferCount : 398
PageFaults : 7607
PageFileUsage : 1512
ParentProcessId : 944
PeakPageFileUsage : 1604
PeakVirtualSize : 2203398037504
PeakWorkingSetSize : 6404
Priority : 8
PrivatePageCount : 1548288
ProcessId : 1944
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 59
QuotaPeakNonPagedPoolUsage : 8
QuotaPeakPagedPoolUsage : 59
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 30781250
VirtualSize : 2203395940352
WindowsVersion : 10.0.19045
WorkingSetSize : 2338816
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 158
VM : 2203395940352
WS : 2338816
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1956"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1956"
Caption : IntelCpHDCPSvc.exe
CommandLine : C:\Windows\System32\DriverStore\FileRepository\
iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCp
HDCPSvc.exe
CreationClassName : Win32_Process
CreationDate : 20230717120028.096221+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : IntelCpHDCPSvc.exe
ExecutablePath : C:\Windows\System32\DriverStore\FileRepository\
iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCp
HDCPSvc.exe
ExecutionState :
Handle : 1956
HandleCount : 146
InstallDate :
KernelModeTime : 468750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : IntelCpHDCPSvc.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 37
OtherTransferCount : 594
PageFaults : 7767
PageFileUsage : 1404
ParentProcessId : 944
PeakPageFileUsage : 1600
PeakVirtualSize : 2203402018816
PeakWorkingSetSize : 27152
Priority : 8
PrivatePageCount : 1437696
ProcessId : 1956
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 84
QuotaPeakNonPagedPoolUsage : 10
QuotaPeakPagedPoolUsage : 86
ReadOperationCount : 36
ReadTransferCount : 724
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 312500
VirtualSize : 2203396722688
WindowsVersion : 10.0.19045
WorkingSetSize : 1814528
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : IntelCpHDCPSvc.exe
Handles : 146
VM : 2203396722688
WS : 1814528
Path : C:\Windows\System32\DriverStore\FileRepository\
iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCp
HDCPSvc.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1988"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1988"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalSystemNetworkRestricted -p -s DisplayEnhancementSe
rvice
CreationClassName : Win32_Process
CreationDate : 20230717120028.107290+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 1988
HandleCount : 348
InstallDate :
KernelModeTime : 1406250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 87
OtherTransferCount : 3078
PageFaults : 8023
PageFileUsage : 2724
ParentProcessId : 944
PeakPageFileUsage : 3136
PeakVirtualSize : 2203406417920
PeakWorkingSetSize : 9436
Priority : 8
PrivatePageCount : 2789376
ProcessId : 1988
QuotaNonPagedPoolUsage : 12
QuotaPagedPoolUsage : 85
QuotaPeakNonPagedPoolUsage : 14
QuotaPeakPagedPoolUsage : 92
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 12
UserModeTime : 312500
VirtualSize : 2203399602176
WindowsVersion : 10.0.19045
WorkingSetSize : 4366336
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 348
VM : 2203399602176
WS : 4366336
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2016"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2016"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k netsvcs -p -s
Schedule
CreationClassName : Win32_Process
CreationDate : 20230717120028.116977+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 2016
HandleCount : 401
InstallDate :
KernelModeTime : 380781250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 155137
OtherTransferCount : 8424654
PageFaults : 71093
PageFileUsage : 6436
ParentProcessId : 944
PeakPageFileUsage : 7012
PeakVirtualSize : 2203438096384
PeakWorkingSetSize : 15808
Priority : 8
PrivatePageCount : 6590464
ProcessId : 2016
QuotaNonPagedPoolUsage : 18
QuotaPagedPoolUsage : 249
QuotaPeakNonPagedPoolUsage : 22
QuotaPeakPagedPoolUsage : 257
ReadOperationCount : 10321
ReadTransferCount : 1280926
SessionId : 0
Status :
TerminationDate :
ThreadCount : 9
UserModeTime : 103593750
VirtualSize : 2203425689600
WindowsVersion : 10.0.19045
WorkingSetSize : 9822208
WriteOperationCount : 12412
WriteTransferCount : 134788612
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 401
VM : 2203425689600
WS : 9822208
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1032"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1032"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalSystemNetworkRestricted -p -s hidserv
CreationClassName : Win32_Process
CreationDate : 20230717120028.138206+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 1032
HandleCount : 140
InstallDate :
KernelModeTime : 625000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 97
OtherTransferCount : 2894
PageFaults : 6592
PageFileUsage : 1632
ParentProcessId : 944
PeakPageFileUsage : 1788
PeakVirtualSize : 2203399114752
PeakWorkingSetSize : 6828
Priority : 8
PrivatePageCount : 1671168
ProcessId : 1032
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 73
QuotaPeakNonPagedPoolUsage : 10
QuotaPeakPagedPoolUsage : 74
ReadOperationCount : 1
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 6
UserModeTime : 156250
VirtualSize : 2203397013504
WindowsVersion : 10.0.19045
WorkingSetSize : 2060288
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 140
VM : 2203397013504
WS : 2060288
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1212"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1212"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k LocalService -p -s
EventSystem
CreationClassName : Win32_Process
CreationDate : 20230717120028.140363+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 1212
HandleCount : 173
InstallDate :
KernelModeTime : 2656250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 68
OtherTransferCount : 1446
PageFaults : 11397
PageFileUsage : 2080
ParentProcessId : 944
PeakPageFileUsage : 2360
PeakVirtualSize : 2203402461184
PeakWorkingSetSize : 8276
Priority : 8
PrivatePageCount : 2129920
ProcessId : 1212
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 73
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 73
ReadOperationCount : 34
ReadTransferCount : 714
SessionId : 0
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 2343750
VirtualSize : 2203396161536
WindowsVersion : 10.0.19045
WorkingSetSize : 4456448
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 173
VM : 2203396161536
WS : 4456448
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2072"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2072"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k
LocalServiceNetworkRestricted -p -s EventLog
CreationClassName : Win32_Process
CreationDate : 20230717120028.164088+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 2072
HandleCount : 451
InstallDate :
KernelModeTime : 102343750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 26189
OtherTransferCount : 344122
PageFaults : 317883
PageFileUsage : 16652
ParentProcessId : 944
PeakPageFileUsage : 19468
PeakVirtualSize : 2203437686784
PeakWorkingSetSize : 21860
Priority : 8
PrivatePageCount : 17051648
ProcessId : 2072
QuotaNonPagedPoolUsage : 14
QuotaPagedPoolUsage : 85
QuotaPeakNonPagedPoolUsage : 15
QuotaPeakPagedPoolUsage : 100
ReadOperationCount : 105775
ReadTransferCount : 5766171648
SessionId : 0
Status :
TerminationDate :
ThreadCount : 9
UserModeTime : 502187500
VirtualSize : 2203429740544
WindowsVersion : 10.0.19045
WorkingSetSize : 14065664
WriteOperationCount : 63571
WriteTransferCount : 415443672
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 451
VM : 2203429740544
WS : 14065664
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2088"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2088"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k netsvcs -p -s
ProfSvc
CreationClassName : Win32_Process
CreationDate : 20230717120028.169196+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 2088
HandleCount : 248
InstallDate :
KernelModeTime : 2656250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1934
OtherTransferCount : 77726
PageFaults : 10235
PageFileUsage : 3412
ParentProcessId : 944
PeakPageFileUsage : 3608
PeakVirtualSize : 2203438727168
PeakWorkingSetSize : 14256
Priority : 8
PrivatePageCount : 3493888
ProcessId : 2088
QuotaNonPagedPoolUsage : 14
QuotaPagedPoolUsage : 158
QuotaPeakNonPagedPoolUsage : 15
QuotaPeakPagedPoolUsage : 163
ReadOperationCount : 2
ReadTransferCount : 8192
SessionId : 0
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 937500
VirtualSize : 2203435057152
WindowsVersion : 10.0.19045
WorkingSetSize : 6209536
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 248
VM : 2203435057152
WS : 6209536
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2220"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2220"
Caption : IntelCpHeciSvc.exe
CommandLine : C:\Windows\System32\DriverStore\FileRepository\
iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCp
HeciSvc.exe
CreationClassName : Win32_Process
CreationDate : 20230717120028.209794+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : IntelCpHeciSvc.exe
ExecutablePath : C:\Windows\System32\DriverStore\FileRepository\
iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCp
HeciSvc.exe
ExecutionState :
Handle : 2220
HandleCount : 137
InstallDate :
KernelModeTime : 156250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : IntelCpHeciSvc.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 42
OtherTransferCount : 809
PageFaults : 4762
PageFileUsage : 1404
ParentProcessId : 944
PeakPageFileUsage : 1600
PeakVirtualSize : 2203397140480
PeakWorkingSetSize : 15432
Priority : 8
PrivatePageCount : 1437696
ProcessId : 2220
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 71
QuotaPeakNonPagedPoolUsage : 10
QuotaPeakPagedPoolUsage : 72
ReadOperationCount : 60
ReadTransferCount : 1282
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 0
VirtualSize : 2203390849024
WindowsVersion : 10.0.19045
WorkingSetSize : 1708032
WriteOperationCount : 4
WriteTransferCount : 124
PSComputerName : XOANI-G1-LAPTOP
ProcessName : IntelCpHeciSvc.exe
Handles : 137
VM : 2203390849024
WS : 1708032
Path : C:\Windows\System32\DriverStore\FileRepository\
iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCp
HeciSvc.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2236"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2236"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k LocalService -p
CreationClassName : Win32_Process
CreationDate : 20230717120028.212593+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 2236
HandleCount : 226
InstallDate :
KernelModeTime : 625000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 133
OtherTransferCount : 2448
PageFaults : 7976
PageFileUsage : 2356
ParentProcessId : 944
PeakPageFileUsage : 2616
PeakVirtualSize : 2203419877376
PeakWorkingSetSize : 12044
Priority : 8
PrivatePageCount : 2412544
ProcessId : 2236
QuotaNonPagedPoolUsage : 13
QuotaPagedPoolUsage : 116
QuotaPeakNonPagedPoolUsage : 13
QuotaPeakPagedPoolUsage : 118
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 625000
VirtualSize : 2203415683072
WindowsVersion : 10.0.19045
WorkingSetSize : 2846720
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 226
VM : 2203415683072
WS : 2846720
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2264"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2264"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k netsvcs -p -s SENS
CreationClassName : Win32_Process
CreationDate : 20230717120028.220687+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 2264
HandleCount : 175
InstallDate :
KernelModeTime : 625000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 117
OtherTransferCount : 1950
PageFaults : 3065
PageFileUsage : 1904
ParentProcessId : 944
PeakPageFileUsage : 2380
PeakVirtualSize : 2203402620928
PeakWorkingSetSize : 8888
Priority : 8
PrivatePageCount : 1949696
ProcessId : 2264
QuotaNonPagedPoolUsage : 13
QuotaPagedPoolUsage : 79
QuotaPeakNonPagedPoolUsage : 15
QuotaPeakPagedPoolUsage : 80
ReadOperationCount : 108
ReadTransferCount : 2172
SessionId : 0
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 156250
VirtualSize : 2203396300800
WindowsVersion : 10.0.19045
WorkingSetSize : 1683456
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 175
VM : 2203396300800
WS : 1683456
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2340"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2340"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k LocalService -p -s
nsi
CreationClassName : Win32_Process
CreationDate : 20230717120028.259258+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 2340
HandleCount : 158
InstallDate :
KernelModeTime : 1004375000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 41500
OtherTransferCount : 1500278
PageFaults : 841184
PageFileUsage : 7880
ParentProcessId : 944
PeakPageFileUsage : 8564
PeakVirtualSize : 2203399319552
PeakWorkingSetSize : 11708
Priority : 8
PrivatePageCount : 8069120
ProcessId : 2340
QuotaNonPagedPoolUsage : 28
QuotaPagedPoolUsage : 57
QuotaPeakNonPagedPoolUsage : 30
QuotaPeakPagedPoolUsage : 57
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 6
UserModeTime : 1493437500
VirtualSize : 2203397222400
WindowsVersion : 10.0.19045
WorkingSetSize : 7561216
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 158
VM : 2203397222400
WS : 7561216
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2364"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2364"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k netsvcs -p -s
UserManager
CreationClassName : Win32_Process
CreationDate : 20230717120028.267345+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 2364
HandleCount : 425
InstallDate :
KernelModeTime : 42343750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 658
OtherTransferCount : 13464
PageFaults : 34081
PageFileUsage : 3672
ParentProcessId : 944
PeakPageFileUsage : 3952
PeakVirtualSize : 2203446579200
PeakWorkingSetSize : 21532
Priority : 8
PrivatePageCount : 3760128
ProcessId : 2364
QuotaNonPagedPoolUsage : 13
QuotaPagedPoolUsage : 135
QuotaPeakNonPagedPoolUsage : 16
QuotaPeakPagedPoolUsage : 163
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 9
UserModeTime : 27812500
VirtualSize : 2203427594240
WindowsVersion : 10.0.19045
WorkingSetSize : 7020544
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 425
VM : 2203427594240
WS : 7020544
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2460"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2460"
Caption : igfxCUIService.exe
CommandLine : C:\Windows\System32\DriverStore\FileRepository\
cui_dch.inf_amd64_e6d6f5a306002a89\igfxCUIS
ervice.exe
CreationClassName : Win32_Process
CreationDate : 20230717120028.330843+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : igfxCUIService.exe
ExecutablePath : C:\Windows\System32\DriverStore\FileRepository\
cui_dch.inf_amd64_e6d6f5a306002a89\igfxCUIS
ervice.exe
ExecutionState :
Handle : 2460
HandleCount : 180
InstallDate :
KernelModeTime : 156250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : igfxCUIService.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 143
OtherTransferCount : 2422
PageFaults : 6673
PageFileUsage : 1824
ParentProcessId : 944
PeakPageFileUsage : 2016
PeakVirtualSize : 2203407257600
PeakWorkingSetSize : 21524
Priority : 8
PrivatePageCount : 1867776
ProcessId : 2460
QuotaNonPagedPoolUsage : 11
QuotaPagedPoolUsage : 91
QuotaPeakNonPagedPoolUsage : 13
QuotaPeakPagedPoolUsage : 91
ReadOperationCount : 72
ReadTransferCount : 1448
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 312500
VirtualSize : 2203400966144
WindowsVersion : 10.0.19045
WorkingSetSize : 2215936
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : igfxCUIService.exe
Handles : 180
VM : 2203400966144
WS : 2215936
Path : C:\Windows\System32\DriverStore\FileRepository\
cui_dch.inf_amd64_e6d6f5a306002a89\igfxCUIS
ervice.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2604"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2604"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k LocalService -p -s
DispBrokerDesktopSvc
CreationClassName : Win32_Process
CreationDate : 20230717120028.439984+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 2604
HandleCount : 119
InstallDate :
KernelModeTime : 1250000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 45
OtherTransferCount : 110
PageFaults : 6980
PageFileUsage : 1440
ParentProcessId : 944
PeakPageFileUsage : 1708
PeakVirtualSize : 2203393155072
PeakWorkingSetSize : 7600
Priority : 8
PrivatePageCount : 1474560
ProcessId : 2604
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 64
QuotaPeakNonPagedPoolUsage : 9
QuotaPeakPagedPoolUsage : 64
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 156250
VirtualSize : 2203388960768
WindowsVersion : 10.0.19045
WorkingSetSize : 1650688
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 119
VM : 2203388960768
WS : 1650688
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2612"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2612"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalServiceNetworkRestricted -p -s Dhcp
CreationClassName : Win32_Process
CreationDate : 20230717120028.446324+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 2612
HandleCount : 237
InstallDate :
KernelModeTime : 240468750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 39182
OtherTransferCount : 3533982
PageFaults : 25287
PageFileUsage : 2640
ParentProcessId : 944
PeakPageFileUsage : 2932
PeakVirtualSize : 2203398156288
PeakWorkingSetSize : 8300
Priority : 8
PrivatePageCount : 2703360
ProcessId : 2612
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 79
QuotaPeakNonPagedPoolUsage : 18
QuotaPeakPagedPoolUsage : 80
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 7
UserModeTime : 271875000
VirtualSize : 2203392913408
WindowsVersion : 10.0.19045
WorkingSetSize : 3923968
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 237
VM : 2203392913408
WS : 3923968
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2620"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2620"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k appmodel -p -s
StateRepository
CreationClassName : Win32_Process
CreationDate : 20230717120028.451585+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 2620
HandleCount : 187
InstallDate :
KernelModeTime : 77187500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 3529
OtherTransferCount : 11912
PageFaults : 126002
PageFileUsage : 7552
ParentProcessId : 944
PeakPageFileUsage : 13804
PeakVirtualSize : 2203419262976
PeakWorkingSetSize : 22568
Priority : 8
PrivatePageCount : 7733248
ProcessId : 2620
QuotaNonPagedPoolUsage : 11
QuotaPagedPoolUsage : 81
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 84
ReadOperationCount : 143056
ReadTransferCount : 73171748
SessionId : 0
Status :
TerminationDate :
ThreadCount : 7
UserModeTime : 130937500
VirtualSize : 2203417120768
WindowsVersion : 10.0.19045
WorkingSetSize : 13783040
WriteOperationCount : 920
WriteTransferCount : 324768
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 187
VM : 2203417120768
WS : 13783040
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2648"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2648"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalSystemNetworkRestricted -p -s DeviceAssociationSer
vice
CreationClassName : Win32_Process
CreationDate : 20230717120028.470991+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 2648
HandleCount : 191
InstallDate :
KernelModeTime : 781250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 123
OtherTransferCount : 4628
PageFaults : 8137
PageFileUsage : 1840
ParentProcessId : 944
PeakPageFileUsage : 2064
PeakVirtualSize : 2203399643136
PeakWorkingSetSize : 6988
Priority : 8
PrivatePageCount : 1884160
ProcessId : 2648
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 72
QuotaPeakNonPagedPoolUsage : 12
QuotaPeakPagedPoolUsage : 72
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 6
UserModeTime : 156250
VirtualSize : 2203395973120
WindowsVersion : 10.0.19045
WorkingSetSize : 3538944
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 191
VM : 2203395973120
WS : 3538944
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2724"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2724"
Caption : UshUpgradeService.exe
CommandLine : "C:\Windows\System32\UshUpgradeService.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120028.498568+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : UshUpgradeService.exe
ExecutablePath : C:\Windows\System32\UshUpgradeService.exe
ExecutionState :
Handle : 2724
HandleCount : 156
InstallDate :
KernelModeTime : 156250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : UshUpgradeService.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 136
OtherTransferCount : 2586
PageFaults : 2811
PageFileUsage : 1480
ParentProcessId : 944
PeakPageFileUsage : 1548
PeakVirtualSize : 4385800192
PeakWorkingSetSize : 7400
Priority : 8
PrivatePageCount : 1515520
ProcessId : 2724
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 105
QuotaPeakNonPagedPoolUsage : 9
QuotaPeakPagedPoolUsage : 105
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 156250
VirtualSize : 4383703040
WindowsVersion : 10.0.19045
WorkingSetSize : 2256896
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : UshUpgradeService.exe
Handles : 156
VM : 4383703040
WS : 2256896
Path : C:\Windows\System32\UshUpgradeService.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2836"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2836"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalSystemNetworkRestricted -p -s SysMain
CreationClassName : Win32_Process
CreationDate : 20230717120028.583514+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 2836
HandleCount : 222
InstallDate :
KernelModeTime : 3906875000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 302882
OtherTransferCount : 2505674
PageFaults : 1454767
PageFileUsage : 3208
ParentProcessId : 944
PeakPageFileUsage : 8644
PeakVirtualSize : 2207739240448
PeakWorkingSetSize : 16616
Priority : 8
PrivatePageCount : 3284992
ProcessId : 2836
QuotaNonPagedPoolUsage : 13
QuotaPagedPoolUsage : 106
QuotaPeakNonPagedPoolUsage : 13
QuotaPeakPagedPoolUsage : 127
ReadOperationCount : 290
ReadTransferCount : 9575129
SessionId : 0
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 124062500
VirtualSize : 2207727325184
WindowsVersion : 10.0.19045
WorkingSetSize : 6606848
WriteOperationCount : 9261
WriteTransferCount : 71551857
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 222
VM : 2207727325184
WS : 6606848
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2856"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2856"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k netsvcs -p -s
Themes
CreationClassName : Win32_Process
CreationDate : 20230717120028.599629+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 2856
HandleCount : 209
InstallDate :
KernelModeTime : 18750000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 30
OtherTransferCount : 110
PageFaults : 8333
PageFileUsage : 1320
ParentProcessId : 944
PeakPageFileUsage : 1460
PeakVirtualSize : 2203392274432
PeakWorkingSetSize : 6216
Priority : 8
PrivatePageCount : 1351680
ProcessId : 2856
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 65
QuotaPeakNonPagedPoolUsage : 8
QuotaPeakPagedPoolUsage : 66
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 6718750
VirtualSize : 2203390173184
WindowsVersion : 10.0.19045
WorkingSetSize : 1974272
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 209
VM : 2203390173184
WS : 1974272
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2940"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2940"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k
LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
CreationClassName : Win32_Process
CreationDate : 20230717120028.674942+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 2940
HandleCount : 196
InstallDate :
KernelModeTime : 3906250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1386
OtherTransferCount : 37016
PageFaults : 8454
PageFileUsage : 1884
ParentProcessId : 944
PeakPageFileUsage : 2188
PeakVirtualSize : 2203398668288
PeakWorkingSetSize : 8500
Priority : 8
PrivatePageCount : 1929216
ProcessId : 2940
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 83
QuotaPeakNonPagedPoolUsage : 13
QuotaPeakPagedPoolUsage : 84
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 1093750
VirtualSize : 2203394473984
WindowsVersion : 10.0.19045
WorkingSetSize : 2080768
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 196
VM : 2203394473984
WS : 2080768
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2948"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2948"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k LocalService -p -s
FontCache
CreationClassName : Win32_Process
CreationDate : 20230717120028.687442+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 2948
HandleCount : 166
InstallDate :
KernelModeTime : 4531250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 769
OtherTransferCount : 24876
PageFaults : 7821
PageFileUsage : 2020
ParentProcessId : 944
PeakPageFileUsage : 2156
PeakVirtualSize : 2203433644032
PeakWorkingSetSize : 9008
Priority : 8
PrivatePageCount : 2068480
ProcessId : 2948
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 122
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 139
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 7
UserModeTime : 1718750
VirtualSize : 2203423944704
WindowsVersion : 10.0.19045
WorkingSetSize : 3649536
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 166
VM : 2203423944704
WS : 3649536
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2964"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2964"
Caption : Memory Compression
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230717120028.696907+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : Memory Compression
ExecutablePath :
ExecutionState :
Handle : 2964
HandleCount : 0
InstallDate :
KernelModeTime : 1873437500
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : Memory Compression
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 0
OtherTransferCount : 0
PageFaults : 2271443
PageFileUsage : 1092
ParentProcessId : 4
PeakPageFileUsage : 1164
PeakVirtualSize : 574619648
PeakWorkingSetSize : 535040
Priority : 8
PrivatePageCount : 1118208
ProcessId : 2964
QuotaNonPagedPoolUsage : 0
QuotaPagedPoolUsage : 5
QuotaPeakNonPagedPoolUsage : 0
QuotaPeakPagedPoolUsage : 5
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 26
UserModeTime : 0
VirtualSize : 364904448
WindowsVersion : 10.0.19045
WorkingSetSize : 340504576
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : Memory Compression
Handles : 0
VM : 364904448
WS : 340504576
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2980"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2980"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k NetworkService -p -
s NlaSvc
CreationClassName : Win32_Process
CreationDate : 20230717120028.708264+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 2980
HandleCount : 415
InstallDate :
KernelModeTime : 142656250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1303314
OtherTransferCount : 98779718
PageFaults : 38159
PageFileUsage : 4720
ParentProcessId : 944
PeakPageFileUsage : 7604
PeakVirtualSize : 2203433193472
PeakWorkingSetSize : 13364
Priority : 8
PrivatePageCount : 4833280
ProcessId : 2980
QuotaNonPagedPoolUsage : 18
QuotaPagedPoolUsage : 106
QuotaPeakNonPagedPoolUsage : 23
QuotaPeakPagedPoolUsage : 108
ReadOperationCount : 17
ReadTransferCount : 1972
SessionId : 0
Status :
TerminationDate :
ThreadCount : 8
UserModeTime : 79375000
VirtualSize : 2203423756288
WindowsVersion : 10.0.19045
WorkingSetSize : 4608000
WriteOperationCount : 17
WriteTransferCount : 2720
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 415
VM : 2203423756288
WS : 4608000
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1532"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1532"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k LocalService -p -s
netprofm
CreationClassName : Win32_Process
CreationDate : 20230717120028.870068+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 1532
HandleCount : 502
InstallDate :
KernelModeTime : 111718750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 629611
OtherTransferCount : 52487812
PageFaults : 175722
PageFileUsage : 3760
ParentProcessId : 944
PeakPageFileUsage : 3988
PeakVirtualSize : 2203413516288
PeakWorkingSetSize : 10716
Priority : 8
PrivatePageCount : 3850240
ProcessId : 1532
QuotaNonPagedPoolUsage : 14
QuotaPagedPoolUsage : 104
QuotaPeakNonPagedPoolUsage : 18
QuotaPeakPagedPoolUsage : 105
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 14
UserModeTime : 110781250
VirtualSize : 2203407732736
WindowsVersion : 10.0.19045
WorkingSetSize : 6205440
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 502
VM : 2203407732736
WS : 6205440
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3204"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3204"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k
LocalServiceNetworkRestricted -p
CreationClassName : Win32_Process
CreationDate : 20230717120029.120029+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 3204
HandleCount : 398
InstallDate :
KernelModeTime : 15312500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 756
OtherTransferCount : 30196
PageFaults : 16938
PageFileUsage : 3476
ParentProcessId : 944
PeakPageFileUsage : 3668
PeakVirtualSize : 2203418574848
PeakWorkingSetSize : 14008
Priority : 8
PrivatePageCount : 3559424
ProcessId : 3204
QuotaNonPagedPoolUsage : 14
QuotaPagedPoolUsage : 116
QuotaPeakNonPagedPoolUsage : 15
QuotaPeakPagedPoolUsage : 117
ReadOperationCount : 48
ReadTransferCount : 7296
SessionId : 0
Status :
TerminationDate :
ThreadCount : 11
UserModeTime : 11093750
VirtualSize : 2203416993792
WindowsVersion : 10.0.19045
WorkingSetSize : 8777728
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 398
VM : 2203416993792
WS : 8777728
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3288"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3288"
Caption : RtkAudioService64.exe
CommandLine : "C:\Program Files\Realtek\Audio\HDA\
RtkAudioService64.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120029.256591+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : RtkAudioService64.exe
ExecutablePath : C:\Program Files\Realtek\Audio\HDA\
RtkAudioService64.exe
ExecutionState :
Handle : 3288
HandleCount : 243
InstallDate :
KernelModeTime : 312500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : RtkAudioService64.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 400
OtherTransferCount : 5390
PageFaults : 3424
PageFileUsage : 1772
ParentProcessId : 944
PeakPageFileUsage : 2024
PeakVirtualSize : 4393312256
PeakWorkingSetSize : 9144
Priority : 8
PrivatePageCount : 1814528
ProcessId : 3288
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 111
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 111
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 312500
VirtualSize : 4389117952
WindowsVersion : 10.0.19045
WorkingSetSize : 2351104
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : RtkAudioService64.exe
Handles : 243
VM : 4389117952
WS : 2351104
Path : C:\Program Files\Realtek\Audio\HDA\
RtkAudioService64.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3328"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3328"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k
LocalServiceNetworkRestricted -s RmSvc
CreationClassName : Win32_Process
CreationDate : 20230717120029.414002+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 3328
HandleCount : 225
InstallDate :
KernelModeTime : 334062500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1300
OtherTransferCount : 104430
PageFaults : 7367
PageFileUsage : 2160
ParentProcessId : 944
PeakPageFileUsage : 2628
PeakVirtualSize : 2203403956224
PeakWorkingSetSize : 9348
Priority : 8
PrivatePageCount : 2211840
ProcessId : 3328
QuotaNonPagedPoolUsage : 11
QuotaPagedPoolUsage : 77
QuotaPeakNonPagedPoolUsage : 15
QuotaPeakPagedPoolUsage : 79
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 7
UserModeTime : 662812500
VirtualSize : 2203398713344
WindowsVersion : 10.0.19045
WorkingSetSize : 4341760
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 225
VM : 2203398713344
WS : 4341760
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3404"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3404"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k
LocalServiceNetworkRestricted -p
CreationClassName : Win32_Process
CreationDate : 20230717120029.477515+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 3404
HandleCount : 145
InstallDate :
KernelModeTime : 12812500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 8880
OtherTransferCount : 986742
PageFaults : 4919
PageFileUsage : 1812
ParentProcessId : 944
PeakPageFileUsage : 2112
PeakVirtualSize : 2203391516672
PeakWorkingSetSize : 7236
Priority : 8
PrivatePageCount : 1855488
ProcessId : 3404
QuotaNonPagedPoolUsage : 12
QuotaPagedPoolUsage : 65
QuotaPeakNonPagedPoolUsage : 14
QuotaPeakPagedPoolUsage : 65
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 10000000
VirtualSize : 2203388895232
WindowsVersion : 10.0.19045
WorkingSetSize : 2822144
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 145
VM : 2203388895232
WS : 2822144
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3400"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3400"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalServiceNetworkRestricted -p
CreationClassName : Win32_Process
CreationDate : 20230717120029.477515+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 3400
HandleCount : 383
InstallDate :
KernelModeTime : 345468750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1198
OtherTransferCount : 101546
PageFaults : 15610
PageFileUsage : 2828
ParentProcessId : 944
PeakPageFileUsage : 3604
PeakVirtualSize : 2203413250048
PeakWorkingSetSize : 10784
Priority : 8
PrivatePageCount : 2895872
ProcessId : 3400
QuotaNonPagedPoolUsage : 18
QuotaPagedPoolUsage : 103
QuotaPeakNonPagedPoolUsage : 23
QuotaPeakPagedPoolUsage : 103
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 10
UserModeTime : 647656250
VirtualSize : 2203404312576
WindowsVersion : 10.0.19045
WorkingSetSize : 3715072
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 383
VM : 2203404312576
WS : 3715072
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3416"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3416"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k NetworkService -p -
s Dnscache
CreationClassName : Win32_Process
CreationDate : 20230717120029.477527+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 3416
HandleCount : 287
InstallDate :
KernelModeTime : 2307656250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2689006
OtherTransferCount : 214364230
PageFaults : 284901
PageFileUsage : 3608
ParentProcessId : 944
PeakPageFileUsage : 3688
PeakVirtualSize : 2203408080896
PeakWorkingSetSize : 8840
Priority : 8
PrivatePageCount : 3694592
ProcessId : 3416
QuotaNonPagedPoolUsage : 14
QuotaPagedPoolUsage : 86
QuotaPeakNonPagedPoolUsage : 18
QuotaPeakPagedPoolUsage : 87
ReadOperationCount : 4
ReadTransferCount : 1648
SessionId : 0
Status :
TerminationDate :
ThreadCount : 12
UserModeTime : 1375156250
VirtualSize : 2203407032320
WindowsVersion : 10.0.19045
WorkingSetSize : 4677632
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 287
VM : 2203407032320
WS : 4677632
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3644"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3644"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalSystemNetworkRestricted -p
CreationClassName : Win32_Process
CreationDate : 20230717120029.612478+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 3644
HandleCount : 512
InstallDate :
KernelModeTime : 1179375000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 11635
OtherTransferCount : 10460209
PageFaults : 135447
PageFileUsage : 6644
ParentProcessId : 944
PeakPageFileUsage : 9732
PeakVirtualSize : 2203455426560
PeakWorkingSetSize : 19860
Priority : 8
PrivatePageCount : 6803456
ProcessId : 3644
QuotaNonPagedPoolUsage : 23
QuotaPagedPoolUsage : 163
QuotaPeakNonPagedPoolUsage : 26
QuotaPeakPagedPoolUsage : 180
ReadOperationCount : 74313
ReadTransferCount : 3340464
SessionId : 0
Status :
TerminationDate :
ThreadCount : 13
UserModeTime : 1587031250
VirtualSize : 2203444170752
WindowsVersion : 10.0.19045
WorkingSetSize : 7155712
WriteOperationCount : 1
WriteTransferCount : 160
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 512
VM : 2203444170752
WS : 7155712
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3680"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3680"
Caption : RAVBg64.exe
CommandLine : "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe"
/SENDINPUT
CreationClassName : Win32_Process
CreationDate : 20230717120029.733991+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : RAVBg64.exe
ExecutablePath : C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
ExecutionState :
Handle : 3680
HandleCount : 313
InstallDate :
KernelModeTime : 1406250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : RAVBg64.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 854
OtherTransferCount : 12560
PageFaults : 6749
PageFileUsage : 5768
ParentProcessId : 3288
PeakPageFileUsage : 5956
PeakVirtualSize : 4441366528
PeakWorkingSetSize : 15316
Priority : 8
PrivatePageCount : 5906432
ProcessId : 3680
QuotaNonPagedPoolUsage : 15
QuotaPagedPoolUsage : 198
QuotaPeakNonPagedPoolUsage : 17
QuotaPeakPagedPoolUsage : 202
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 937500
VirtualSize : 4433543168
WindowsVersion : 10.0.19045
WorkingSetSize : 6684672
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : RAVBg64.exe
Handles : 313
VM : 4433543168
WS : 6684672
Path : C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3696"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3696"
Caption : RAVBg64.exe
CommandLine : "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe"
/DELLGRM
CreationClassName : Win32_Process
CreationDate : 20230717120029.748440+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : RAVBg64.exe
ExecutablePath : C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
ExecutionState :
Handle : 3696
HandleCount : 327
InstallDate :
KernelModeTime : 1562500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : RAVBg64.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 684
OtherTransferCount : 8934
PageFaults : 6842
PageFileUsage : 4792
ParentProcessId : 3288
PeakPageFileUsage : 4980
PeakVirtualSize : 4434710528
PeakWorkingSetSize : 15516
Priority : 8
PrivatePageCount : 4907008
ProcessId : 3696
QuotaNonPagedPoolUsage : 15
QuotaPagedPoolUsage : 190
QuotaPeakNonPagedPoolUsage : 16
QuotaPeakPagedPoolUsage : 191
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 468750
VirtualSize : 4428132352
WindowsVersion : 10.0.19045
WorkingSetSize : 6823936
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : RAVBg64.exe
Handles : 327
VM : 4428132352
WS : 6823936
Path : C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3716"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3716"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k netsvcs -p -s
ShellHWDetection
CreationClassName : Win32_Process
CreationDate : 20230717120029.756020+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 3716
HandleCount : 196
InstallDate :
KernelModeTime : 5312500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 948
OtherTransferCount : 273621
PageFaults : 9499
PageFileUsage : 2336
ParentProcessId : 944
PeakPageFileUsage : 2664
PeakVirtualSize : 2203414634496
PeakWorkingSetSize : 13404
Priority : 8
PrivatePageCount : 2392064
ProcessId : 3716
QuotaNonPagedPoolUsage : 13
QuotaPagedPoolUsage : 100
QuotaPeakNonPagedPoolUsage : 15
QuotaPeakPagedPoolUsage : 100
ReadOperationCount : 1
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 1406250
VirtualSize : 2203408334848
WindowsVersion : 10.0.19045
WorkingSetSize : 3072000
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 196
VM : 2203408334848
WS : 3072000
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3852"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3852"
Caption : spoolsv.exe
CommandLine : C:\Windows\System32\spoolsv.exe
CreationClassName : Win32_Process
CreationDate : 20230717120029.849348+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : spoolsv.exe
ExecutablePath : C:\Windows\System32\spoolsv.exe
ExecutionState :
Handle : 3852
HandleCount : 423
InstallDate :
KernelModeTime : 8281250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : spoolsv.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1506
OtherTransferCount : 95973
PageFaults : 21787
PageFileUsage : 5504
ParentProcessId : 944
PeakPageFileUsage : 5928
PeakVirtualSize : 2203437867008
PeakWorkingSetSize : 15744
Priority : 8
PrivatePageCount : 5636096
ProcessId : 3852
QuotaNonPagedPoolUsage : 21
QuotaPagedPoolUsage : 138
QuotaPeakNonPagedPoolUsage : 25
QuotaPeakPagedPoolUsage : 146
ReadOperationCount : 2
ReadTransferCount : 232
SessionId : 0
Status :
TerminationDate :
ThreadCount : 8
UserModeTime : 5000000
VirtualSize : 2203427041280
WindowsVersion : 10.0.19045
WorkingSetSize : 4890624
WriteOperationCount : 2
WriteTransferCount : 320
PSComputerName : XOANI-G1-LAPTOP
ProcessName : spoolsv.exe
Handles : 423
VM : 2203427041280
WS : 4890624
Path : C:\Windows\System32\spoolsv.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3944"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3944"
Caption : wlanext.exe
CommandLine : C:\Windows\system32\WLANExt.exe 1936420683056
CreationClassName : Win32_Process
CreationDate : 20230717120029.966797+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : wlanext.exe
ExecutablePath : C:\Windows\system32\WLANExt.exe
ExecutionState :
Handle : 3944
HandleCount : 158
InstallDate :
KernelModeTime : 781250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : wlanext.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 182
OtherTransferCount : 7214
PageFaults : 2958
PageFileUsage : 1556
ParentProcessId : 3644
PeakPageFileUsage : 1724
PeakVirtualSize : 2203408965632
PeakWorkingSetSize : 7812
Priority : 8
PrivatePageCount : 1593344
ProcessId : 3944
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 104
QuotaPeakNonPagedPoolUsage : 9
QuotaPeakPagedPoolUsage : 106
ReadOperationCount : 45
ReadTransferCount : 8783
SessionId : 0
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 312500
VirtualSize : 2203406344192
WindowsVersion : 10.0.19045
WorkingSetSize : 2117632
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : wlanext.exe
Handles : 158
VM : 2203406344192
WS : 2117632
Path : C:\Windows\system32\WLANExt.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3964"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3964"
Caption : conhost.exe
CommandLine : \??\C:\Windows\system32\conhost.exe 0x4
CreationClassName : Win32_Process
CreationDate : 20230717120030.016864+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : conhost.exe
ExecutablePath : C:\Windows\system32\conhost.exe
ExecutionState :
Handle : 3964
HandleCount : 101
InstallDate :
KernelModeTime : 156250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : conhost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 79
OtherTransferCount : 3306
PageFaults : 3229
PageFileUsage : 6256
ParentProcessId : 3944
PeakPageFileUsage : 6312
PeakVirtualSize : 2203402125312
PeakWorkingSetSize : 10280
Priority : 8
PrivatePageCount : 6406144
ProcessId : 3964
QuotaNonPagedPoolUsage : 7
QuotaPagedPoolUsage : 79
QuotaPeakNonPagedPoolUsage : 8
QuotaPeakPagedPoolUsage : 80
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 156250
VirtualSize : 2203401076736
WindowsVersion : 10.0.19045
WorkingSetSize : 1302528
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : conhost.exe
Handles : 101
VM : 2203401076736
WS : 1302528
Path : C:\Windows\system32\conhost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3972"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3972"
Caption : HostControlService.exe
CommandLine : "C:\Windows\System32\HostControlService.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120030.017002+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : HostControlService.exe
ExecutablePath : C:\Windows\System32\HostControlService.exe
ExecutionState :
Handle : 3972
HandleCount : 96
InstallDate :
KernelModeTime : 312500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : HostControlService.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 105
OtherTransferCount : 2276
PageFaults : 2135
PageFileUsage : 1504
ParentProcessId : 944
PeakPageFileUsage : 1564
PeakVirtualSize : 4365762560
PeakWorkingSetSize : 5688
Priority : 8
PrivatePageCount : 1540096
ProcessId : 3972
QuotaNonPagedPoolUsage : 7
QuotaPagedPoolUsage : 66
QuotaPeakNonPagedPoolUsage : 8
QuotaPeakPagedPoolUsage : 66
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 0
VirtualSize : 4363665408
WindowsVersion : 10.0.19045
WorkingSetSize : 1609728
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : HostControlService.exe
Handles : 96
VM : 4363665408
WS : 1609728
Path : C:\Windows\System32\HostControlService.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3984"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3984"
Caption : HostStorageService.exe
CommandLine : "C:\Windows\System32\HostStorageService.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120030.024659+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : HostStorageService.exe
ExecutablePath : C:\Windows\System32\HostStorageService.exe
ExecutionState :
Handle : 3984
HandleCount : 97
InstallDate :
KernelModeTime : 156250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : HostStorageService.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 115
OtherTransferCount : 2284
PageFaults : 2178
PageFileUsage : 1216
ParentProcessId : 944
PeakPageFileUsage : 1276
PeakVirtualSize : 4365492224
PeakWorkingSetSize : 5796
Priority : 8
PrivatePageCount : 1245184
ProcessId : 3984
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 65
QuotaPeakNonPagedPoolUsage : 9
QuotaPeakPagedPoolUsage : 66
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 0
VirtualSize : 4363395072
WindowsVersion : 10.0.19045
WorkingSetSize : 1630208
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : HostStorageService.exe
Handles : 97
VM : 4363395072
WS : 1630208
Path : C:\Windows\System32\HostStorageService.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4056"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4056"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k WbioSvcGroup -s
WbioSrvc
CreationClassName : Win32_Process
CreationDate : 20230717120030.083187+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 4056
HandleCount : 420
InstallDate :
KernelModeTime : 5781250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 688
OtherTransferCount : 184222
PageFaults : 45898
PageFileUsage : 86032
ParentProcessId : 944
PeakPageFileUsage : 86588
PeakVirtualSize : 2203630006272
PeakWorkingSetSize : 112716
Priority : 8
PrivatePageCount : 88096768
ProcessId : 4056
QuotaNonPagedPoolUsage : 21
QuotaPagedPoolUsage : 222
QuotaPeakNonPagedPoolUsage : 23
QuotaPeakPagedPoolUsage : 254
ReadOperationCount : 957
ReadTransferCount : 3883336
SessionId : 0
Status :
TerminationDate :
ThreadCount : 11
UserModeTime : 937500
VirtualSize : 2203605475328
WindowsVersion : 10.0.19045
WorkingSetSize : 56250368
WriteOperationCount : 1
WriteTransferCount : 102400
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 420
VM : 2203605475328
WS : 56250368
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4088"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4088"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k netsvcs -p -s
Winmgmt
CreationClassName : Win32_Process
CreationDate : 20230717120030.099294+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 4088
HandleCount : 550
InstallDate :
KernelModeTime : 9936718750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 777522
OtherTransferCount : 18942704
PageFaults : 21078021
PageFileUsage : 18164
ParentProcessId : 944
PeakPageFileUsage : 23176
PeakVirtualSize : 2203459428352
PeakWorkingSetSize : 29520
Priority : 8
PrivatePageCount : 18599936
ProcessId : 4088
QuotaNonPagedPoolUsage : 19
QuotaPagedPoolUsage : 119
QuotaPeakNonPagedPoolUsage : 20
QuotaPeakPagedPoolUsage : 123
ReadOperationCount : 115325
ReadTransferCount : 944377142
SessionId : 0
Status :
TerminationDate :
ThreadCount : 27
UserModeTime : 20722968750
VirtualSize : 2203457077248
WindowsVersion : 10.0.19045
WorkingSetSize : 22691840
WriteOperationCount : 130
WriteTransferCount : 1951476
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 550
VM : 2203457077248
WS : 22691840
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3156"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3156"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalServiceNoNetworkFirewall -p
CreationClassName : Win32_Process
CreationDate : 20230717120030.122592+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 3156
HandleCount : 452
InstallDate :
KernelModeTime : 168281250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1086302
OtherTransferCount : 72994333
PageFaults : 463049
PageFileUsage : 10840
ParentProcessId : 944
PeakPageFileUsage : 14920
PeakVirtualSize : 2203439775744
PeakWorkingSetSize : 21836
Priority : 8
PrivatePageCount : 11100160
ProcessId : 3156
QuotaNonPagedPoolUsage : 33
QuotaPagedPoolUsage : 114
QuotaPeakNonPagedPoolUsage : 37
QuotaPeakPagedPoolUsage : 116
ReadOperationCount : 1
ReadTransferCount : 116
SessionId : 0
Status :
TerminationDate :
ThreadCount : 18
UserModeTime : 130000000
VirtualSize : 2203438198784
WindowsVersion : 10.0.19045
WorkingSetSize : 13742080
WriteOperationCount : 12
WriteTransferCount : 839840
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 452
VM : 2203438198784
WS : 13742080
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3996"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3996"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k NetworkService -p -
s LanmanWorkstation
CreationClassName : Win32_Process
CreationDate : 20230717120030.194802+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 3996
HandleCount : 188
InstallDate :
KernelModeTime : 63125000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 145379
OtherTransferCount : 9926550
PageFaults : 25415
PageFileUsage : 2216
ParentProcessId : 944
PeakPageFileUsage : 2352
PeakVirtualSize : 2203402358784
PeakWorkingSetSize : 8600
Priority : 8
PrivatePageCount : 2269184
ProcessId : 3996
QuotaNonPagedPoolUsage : 12
QuotaPagedPoolUsage : 84
QuotaPeakNonPagedPoolUsage : 16
QuotaPeakPagedPoolUsage : 90
ReadOperationCount : 11650
ReadTransferCount : 664404
SessionId : 0
Status :
TerminationDate :
ThreadCount : 6
UserModeTime : 41875000
VirtualSize : 2203400781824
WindowsVersion : 10.0.19045
WorkingSetSize : 2945024
WriteOperationCount : 8143
WriteTransferCount : 1095640
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 188
VM : 2203400781824
WS : 2945024
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4288"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4288"
Caption : sihost.exe
CommandLine : sihost.exe
CreationClassName : Win32_Process
CreationDate : 20230717120030.467653+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : sihost.exe
ExecutablePath : C:\Windows\system32\sihost.exe
ExecutionState :
Handle : 4288
HandleCount : 606
InstallDate :
KernelModeTime : 217812500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : sihost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 33704
OtherTransferCount : 1648354
PageFaults : 75142
PageFileUsage : 7300
ParentProcessId : 2364
PeakPageFileUsage : 7444
PeakVirtualSize : 2203507429376
PeakWorkingSetSize : 28456
Priority : 8
PrivatePageCount : 7475200
ProcessId : 4288
QuotaNonPagedPoolUsage : 20
QuotaPagedPoolUsage : 273
QuotaPeakNonPagedPoolUsage : 21
QuotaPeakPagedPoolUsage : 286
ReadOperationCount : 628
ReadTransferCount : 2572288
SessionId : 1
Status :
TerminationDate :
ThreadCount : 13
UserModeTime : 182343750
VirtualSize : 2203499634688
WindowsVersion : 10.0.19045
WorkingSetSize : 21020672
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : sihost.exe
Handles : 606
VM : 2203499634688
WS : 21020672
Path : C:\Windows\system32\sihost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4360"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4360"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k BthAppGroup -p -s
BluetoothUserService
CreationClassName : Win32_Process
CreationDate : 20230717120030.536743+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 4360
HandleCount : 157
InstallDate :
KernelModeTime : 2031250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 113
OtherTransferCount : 66142
PageFaults : 8015
PageFileUsage : 1696
ParentProcessId : 944
PeakPageFileUsage : 2072
PeakVirtualSize : 2203418464256
PeakWorkingSetSize : 8620
Priority : 8
PrivatePageCount : 1736704
ProcessId : 4360
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 110
QuotaPeakNonPagedPoolUsage : 12
QuotaPeakPagedPoolUsage : 113
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 156250
VirtualSize : 2203412164608
WindowsVersion : 10.0.19045
WorkingSetSize : 2080768
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 157
VM : 2203412164608
WS : 2080768
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4368"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4368"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k UnistackSvcGroup -s
CDPUserSvc
CreationClassName : Win32_Process
CreationDate : 20230717120030.540698+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 4368
HandleCount : 356
InstallDate :
KernelModeTime : 136406250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 188586
OtherTransferCount : 4666266
PageFaults : 44248
PageFileUsage : 6596
ParentProcessId : 944
PeakPageFileUsage : 6968
PeakVirtualSize : 2203461677056
PeakWorkingSetSize : 18516
Priority : 8
PrivatePageCount : 6754304
ProcessId : 4368
QuotaNonPagedPoolUsage : 18
QuotaPagedPoolUsage : 192
QuotaPeakNonPagedPoolUsage : 19
QuotaPeakPagedPoolUsage : 194
ReadOperationCount : 68
ReadTransferCount : 223725
SessionId : 1
Status :
TerminationDate :
ThreadCount : 12
UserModeTime : 144218750
VirtualSize : 2203456401408
WindowsVersion : 10.0.19045
WorkingSetSize : 14856192
WriteOperationCount : 913
WriteTransferCount : 1873015
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 356
VM : 2203456401408
WS : 14856192
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4420"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4420"
Caption : igfxEM.exe
CommandLine : "C:\Windows\System32\DriverStore\FileRepository\
cui_dch.inf_amd64_e6d6f5a306002a89\igfxEM.
exe"
CreationClassName : Win32_Process
CreationDate : 20230717120030.584849+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : igfxEM.exe
ExecutablePath : C:\Windows\System32\DriverStore\FileRepository\
cui_dch.inf_amd64_e6d6f5a306002a89\igfxEM.e
xe
ExecutionState :
Handle : 4420
HandleCount : 315
InstallDate :
KernelModeTime : 2812500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : igfxEM.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1309
OtherTransferCount : 35640
PageFaults : 16644
PageFileUsage : 3688
ParentProcessId : 2460
PeakPageFileUsage : 3792
PeakVirtualSize : 2203460681728
PeakWorkingSetSize : 50512
Priority : 8
PrivatePageCount : 3776512
ProcessId : 4420
QuotaNonPagedPoolUsage : 15
QuotaPagedPoolUsage : 196
QuotaPeakNonPagedPoolUsage : 16
QuotaPeakPagedPoolUsage : 197
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 1093750
VirtualSize : 2203456245760
WindowsVersion : 10.0.19045
WorkingSetSize : 5009408
WriteOperationCount : 3
WriteTransferCount : 25308
PSComputerName : XOANI-G1-LAPTOP
ProcessName : igfxEM.exe
Handles : 315
VM : 2203456245760
WS : 5009408
Path : C:\Windows\System32\DriverStore\FileRepository\
cui_dch.inf_amd64_e6d6f5a306002a89\igfxEM.e
xe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4448"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4448"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k UnistackSvcGroup -s
WpnUserService
CreationClassName : Win32_Process
CreationDate : 20230717120030.604694+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 4448
HandleCount : 429
InstallDate :
KernelModeTime : 8437500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1314
OtherTransferCount : 16832
PageFaults : 36886
PageFileUsage : 8064
ParentProcessId : 944
PeakPageFileUsage : 8572
PeakVirtualSize : 2203533742080
PeakWorkingSetSize : 32452
Priority : 8
PrivatePageCount : 8257536
ProcessId : 4448
QuotaNonPagedPoolUsage : 21
QuotaPagedPoolUsage : 321
QuotaPeakNonPagedPoolUsage : 22
QuotaPeakPagedPoolUsage : 342
ReadOperationCount : 92
ReadTransferCount : 383411
SessionId : 1
Status :
TerminationDate :
ThreadCount : 8
UserModeTime : 14531250
VirtualSize : 2203522240512
WindowsVersion : 10.0.19045
WorkingSetSize : 24666112
WriteOperationCount : 1045
WriteTransferCount : 2181727
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 429
VM : 2203522240512
WS : 24666112
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4460"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4460"
Caption : unsecapp.exe
CommandLine : C:\Windows\system32\wbem\unsecapp.exe -Embedding
CreationClassName : Win32_Process
CreationDate : 20230717120030.615879+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : unsecapp.exe
ExecutablePath : C:\Windows\system32\wbem\unsecapp.exe
ExecutionState :
Handle : 4460
HandleCount : 143
InstallDate :
KernelModeTime : 13437500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : unsecapp.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 259
OtherTransferCount : 6846
PageFaults : 25653
PageFileUsage : 1640
ParentProcessId : 1176
PeakPageFileUsage : 1876
PeakVirtualSize : 2203428065280
PeakWorkingSetSize : 7372
Priority : 8
PrivatePageCount : 1679360
ProcessId : 4460
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 119
QuotaPeakNonPagedPoolUsage : 10
QuotaPeakPagedPoolUsage : 137
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 4687500
VirtualSize : 2203415941120
WindowsVersion : 10.0.19045
WorkingSetSize : 5103616
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : unsecapp.exe
Handles : 143
VM : 2203415941120
WS : 5103616
Path : C:\Windows\system32\wbem\unsecapp.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4616"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4616"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k netsvcs -p -s
TokenBroker
CreationClassName : Win32_Process
CreationDate : 20230717120030.804398+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 4616
HandleCount : 334
InstallDate :
KernelModeTime : 124218750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 174449
OtherTransferCount : 6447574
PageFaults : 276833
PageFileUsage : 6092
ParentProcessId : 944
PeakPageFileUsage : 6544
PeakVirtualSize : 2203449909248
PeakWorkingSetSize : 21364
Priority : 8
PrivatePageCount : 6238208
ProcessId : 4616
QuotaNonPagedPoolUsage : 13
QuotaPagedPoolUsage : 135
QuotaPeakNonPagedPoolUsage : 16
QuotaPeakPagedPoolUsage : 179
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 105000000
VirtualSize : 2203428200448
WindowsVersion : 10.0.19045
WorkingSetSize : 12701696
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 334
VM : 2203428200448
WS : 12701696
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4624"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4624"
Caption : taskhostw.exe
CommandLine : taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
CreationClassName : Win32_Process
CreationDate : 20230717120030.812819+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : taskhostw.exe
ExecutablePath : C:\Windows\system32\taskhostw.exe
ExecutionState :
Handle : 4624
HandleCount : 285
InstallDate :
KernelModeTime : 21093750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : taskhostw.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 26381
OtherTransferCount : 250836
PageFaults : 39395
PageFileUsage : 6304
ParentProcessId : 2016
PeakPageFileUsage : 6960
PeakVirtualSize : 2203524337664
PeakWorkingSetSize : 16956
Priority : 8
PrivatePageCount : 6455296
ProcessId : 4624
QuotaNonPagedPoolUsage : 30
QuotaPagedPoolUsage : 195
QuotaPeakNonPagedPoolUsage : 33
QuotaPeakPagedPoolUsage : 196
ReadOperationCount : 38
ReadTransferCount : 1714731
SessionId : 1
Status :
TerminationDate :
ThreadCount : 8
UserModeTime : 16406250
VirtualSize : 2203522203648
WindowsVersion : 10.0.19045
WorkingSetSize : 11096064
WriteOperationCount : 1931
WriteTransferCount : 32436079
PSComputerName : XOANI-G1-LAPTOP
ProcessName : taskhostw.exe
Handles : 285
VM : 2203522203648
WS : 11096064
Path : C:\Windows\system32\taskhostw.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4760"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4760"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k
LocalSystemNetworkRestricted -p -s TabletInputService
CreationClassName : Win32_Process
CreationDate : 20230717120030.962016+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 4760
HandleCount : 166
InstallDate :
KernelModeTime : 625000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 133
OtherTransferCount : 3558
PageFaults : 8230
PageFileUsage : 1816
ParentProcessId : 944
PeakPageFileUsage : 2028
PeakVirtualSize : 2203397382144
PeakWorkingSetSize : 8684
Priority : 8
PrivatePageCount : 1859584
ProcessId : 4760
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 73
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 74
ReadOperationCount : 264
ReadTransferCount : 5392
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 156250
VirtualSize : 2203394457600
WindowsVersion : 10.0.19045
WorkingSetSize : 2035712
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 166
VM : 2203394457600
WS : 2035712
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4856"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4856"
Caption : ctfmon.exe
CommandLine : "ctfmon.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120031.031285+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : ctfmon.exe
ExecutablePath : C:\Windows\system32\ctfmon.exe
ExecutionState :
Handle : 4856
HandleCount : 490
InstallDate :
KernelModeTime : 16250000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : ctfmon.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2680
OtherTransferCount : 20296
PageFaults : 10637
PageFileUsage : 4628
ParentProcessId : 4760
PeakPageFileUsage : 4688
PeakVirtualSize : 2203486273536
PeakWorkingSetSize : 17492
Priority : 13
PrivatePageCount : 4739072
ProcessId : 4856
QuotaNonPagedPoolUsage : 18
QuotaPagedPoolUsage : 245
QuotaPeakNonPagedPoolUsage : 18
QuotaPeakPagedPoolUsage : 245
ReadOperationCount : 17
ReadTransferCount : 46310
SessionId : 1
Status :
TerminationDate :
ThreadCount : 10
UserModeTime : 6718750
VirtualSize : 2203484831744
WindowsVersion : 10.0.19045
WorkingSetSize : 17907712
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : ctfmon.exe
Handles : 490
VM : 2203484831744
WS : 17907712
Path : C:\Windows\system32\ctfmon.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4864"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4864"
Caption : WmiPrvSE.exe
CommandLine : C:\Windows\system32\wbem\wmiprvse.exe
CreationClassName : Win32_Process
CreationDate : 20230717120031.036413+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : WmiPrvSE.exe
ExecutablePath : C:\Windows\system32\wbem\wmiprvse.exe
ExecutionState :
Handle : 4864
HandleCount : 489
InstallDate :
KernelModeTime : 1828750000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : WmiPrvSE.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1931989
OtherTransferCount : 90644501
PageFaults : 5877370
PageFileUsage : 40732
ParentProcessId : 1176
PeakPageFileUsage : 45216
PeakVirtualSize : 2203826610176
PeakWorkingSetSize : 55092
Priority : 8
PrivatePageCount : 41709568
ProcessId : 4864
QuotaNonPagedPoolUsage : 28
QuotaPagedPoolUsage : 200
QuotaPeakNonPagedPoolUsage : 38
QuotaPeakPagedPoolUsage : 828
ReadOperationCount : 5183
ReadTransferCount : 1005754138
SessionId : 0
Status :
TerminationDate :
ThreadCount : 8
UserModeTime : 1331875000
VirtualSize : 2203497365504
WindowsVersion : 10.0.19045
WorkingSetSize : 45387776
WriteOperationCount : 2078
WriteTransferCount : 203644
PSComputerName : XOANI-G1-LAPTOP
ProcessName : WmiPrvSE.exe
Handles : 489
VM : 2203497365504
WS : 45387776
Path : C:\Windows\system32\wbem\wmiprvse.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5116"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5116"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k NetworkService -p -
s CryptSvc
CreationClassName : Win32_Process
CreationDate : 20230717120031.242505+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 5116
HandleCount : 374
InstallDate :
KernelModeTime : 283281250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 218606
OtherTransferCount : 14130579
PageFaults : 189536
PageFileUsage : 5440
ParentProcessId : 944
PeakPageFileUsage : 6620
PeakVirtualSize : 2203510108160
PeakWorkingSetSize : 16872
Priority : 8
PrivatePageCount : 5570560
ProcessId : 5116
QuotaNonPagedPoolUsage : 28
QuotaPagedPoolUsage : 125
QuotaPeakNonPagedPoolUsage : 69
QuotaPeakPagedPoolUsage : 172
ReadOperationCount : 33233
ReadTransferCount : 19955249
SessionId : 0
Status :
TerminationDate :
ThreadCount : 10
UserModeTime : 194687500
VirtualSize : 2203490975744
WindowsVersion : 10.0.19045
WorkingSetSize : 11730944
WriteOperationCount : 3089
WriteTransferCount : 7898521
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 374
VM : 2203490975744
WS : 11730944
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4224"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4224"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k utcsvc -p
CreationClassName : Win32_Process
CreationDate : 20230717120031.242761+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 4224
HandleCount : 601
InstallDate :
KernelModeTime : 320000000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 161058
OtherTransferCount : 26745043
PageFaults : 590577
PageFileUsage : 29116
ParentProcessId : 944
PeakPageFileUsage : 62280
PeakVirtualSize : 2203523166208
PeakWorkingSetSize : 79776
Priority : 8
PrivatePageCount : 29814784
ProcessId : 4224
QuotaNonPagedPoolUsage : 27
QuotaPagedPoolUsage : 188
QuotaPeakNonPagedPoolUsage : 31
QuotaPeakPagedPoolUsage : 194
ReadOperationCount : 1494
ReadTransferCount : 99054506
SessionId : 0
Status :
TerminationDate :
ThreadCount : 16
UserModeTime : 400625000
VirtualSize : 2203519873024
WindowsVersion : 10.0.19045
WorkingSetSize : 29204480
WriteOperationCount : 15853
WriteTransferCount : 39580212
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 601
VM : 2203519873024
WS : 29204480
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4180"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4180"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k
LocalServiceNoNetwork -p -s DPS
CreationClassName : Win32_Process
CreationDate : 20230717120031.246692+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 4180
HandleCount : 357
InstallDate :
KernelModeTime : 2028437500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 980742
OtherTransferCount : 95029164
PageFaults : 12688174
PageFileUsage : 48892
ParentProcessId : 944
PeakPageFileUsage : 85020
PeakVirtualSize : 2203770904576
PeakWorkingSetSize : 79340
Priority : 8
PrivatePageCount : 50065408
ProcessId : 4180
QuotaNonPagedPoolUsage : 21
QuotaPagedPoolUsage : 124
QuotaPeakNonPagedPoolUsage : 57
QuotaPeakPagedPoolUsage : 418
ReadOperationCount : 13290
ReadTransferCount : 181579822
SessionId : 0
Status :
TerminationDate :
ThreadCount : 17
UserModeTime : 3027500000
VirtualSize : 2203586674688
WindowsVersion : 10.0.19045
WorkingSetSize : 50638848
WriteOperationCount : 232972
WriteTransferCount : 1027649788
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 357
VM : 2203586674688
WS : 50638848
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4208"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4208"
Caption : HidMonitorSvc.exe
CommandLine : C:\Windows\system32\DellTPad\HidMonitorSvc.exe
CreationClassName : Win32_Process
CreationDate : 20230717120031.248401+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : HidMonitorSvc.exe
ExecutablePath : C:\Windows\system32\DellTPad\HidMonitorSvc.exe
ExecutionState :
Handle : 4208
HandleCount : 121
InstallDate :
KernelModeTime : 468750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : HidMonitorSvc.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 108
OtherTransferCount : 1934
PageFaults : 2394
PageFileUsage : 1340
ParentProcessId : 944
PeakPageFileUsage : 1404
PeakVirtualSize : 4377104384
PeakWorkingSetSize : 6496
Priority : 8
PrivatePageCount : 1372160
ProcessId : 4208
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 80
QuotaPeakNonPagedPoolUsage : 10
QuotaPeakPagedPoolUsage : 88
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 156250
VirtualSize : 4371808256
WindowsVersion : 10.0.19045
WorkingSetSize : 1695744
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : HidMonitorSvc.exe
Handles : 121
VM : 4371808256
WS : 1695744
Path : C:\Windows\system32\DellTPad\HidMonitorSvc.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5136"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5136"
Caption : bdredline.exe
CommandLine : "C:\Program Files\Bitdefender\Endpoint Security\
bdredline.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120031.354567+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : bdredline.exe
ExecutablePath : C:\Program Files\Bitdefender\Endpoint Security\
bdredline.exe
ExecutionState :
Handle : 5136
HandleCount : 366
InstallDate :
KernelModeTime : 29062500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : bdredline.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 48537
OtherTransferCount : 3137089
PageFaults : 46458
PageFileUsage : 4992
ParentProcessId : 944
PeakPageFileUsage : 5956
PeakVirtualSize : 4420767744
PeakWorkingSetSize : 15896
Priority : 8
PrivatePageCount : 5111808
ProcessId : 5136
QuotaNonPagedPoolUsage : 15
QuotaPagedPoolUsage : 156
QuotaPeakNonPagedPoolUsage : 19
QuotaPeakPagedPoolUsage : 167
ReadOperationCount : 39256
ReadTransferCount : 330916768
SessionId : 0
Status :
TerminationDate :
ThreadCount : 8
UserModeTime : 29062500
VirtualSize : 4414611456
WindowsVersion : 10.0.19045
WorkingSetSize : 10223616
WriteOperationCount : 28
WriteTransferCount : 8177
PSComputerName : XOANI-G1-LAPTOP
ProcessName : bdredline.exe
Handles : 366
VM : 4414611456
WS : 10223616
Path : C:\Program Files\Bitdefender\Endpoint Security\
bdredline.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5172"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5172"
Caption : EPUpdateService.exe
CommandLine : "C:\Program Files\Bitdefender\Endpoint Security\
EPUpdateService.exe" /service
CreationClassName : Win32_Process
CreationDate : 20230717120031.367811+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : EPUpdateService.exe
ExecutablePath : C:\Program Files\Bitdefender\Endpoint Security\
EPUpdateService.exe
ExecutionState :
Handle : 5172
HandleCount : 337
InstallDate :
KernelModeTime : 562812500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : EPUpdateService.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 791908
OtherTransferCount : 26169818
PageFaults : 360572
PageFileUsage : 8596
ParentProcessId : 944
PeakPageFileUsage : 9028
PeakVirtualSize : 4439859200
PeakWorkingSetSize : 18320
Priority : 8
PrivatePageCount : 8802304
ProcessId : 5172
QuotaNonPagedPoolUsage : 22
QuotaPagedPoolUsage : 161
QuotaPeakNonPagedPoolUsage : 31
QuotaPeakPagedPoolUsage : 167
ReadOperationCount : 9477463
ReadTransferCount : 67262819
SessionId : 0
Status :
TerminationDate :
ThreadCount : 21
UserModeTime : 521875000
VirtualSize : 4434223104
WindowsVersion : 10.0.19045
WorkingSetSize : 12120064
WriteOperationCount : 1625398
WriteTransferCount : 204730013
PSComputerName : XOANI-G1-LAPTOP
ProcessName : EPUpdateService.exe
Handles : 337
VM : 4434223104
WS : 12120064
Path : C:\Program Files\Bitdefender\Endpoint Security\
EPUpdateService.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5208"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5208"
Caption : esif_uf.exe
CommandLine : C:\Windows\System32\Intel\DPTF\esif_uf.exe
CreationClassName : Win32_Process
CreationDate : 20230717120031.396138+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : esif_uf.exe
ExecutablePath : C:\Windows\System32\Intel\DPTF\esif_uf.exe
ExecutionState :
Handle : 5208
HandleCount : 138
InstallDate :
KernelModeTime : 156250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : esif_uf.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 219
OtherTransferCount : 4074
PageFaults : 2710
PageFileUsage : 1876
ParentProcessId : 944
PeakPageFileUsage : 1972
PeakVirtualSize : 2203400130560
PeakWorkingSetSize : 7532
Priority : 13
PrivatePageCount : 1921024
ProcessId : 5208
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 77
QuotaPeakNonPagedPoolUsage : 10
QuotaPeakPagedPoolUsage : 86
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 0
VirtualSize : 2203394416640
WindowsVersion : 10.0.19045
WorkingSetSize : 1806336
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : esif_uf.exe
Handles : 138
VM : 2203394416640
WS : 1806336
Path : C:\Windows\System32\Intel\DPTF\esif_uf.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5224"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5224"
Caption : OneApp.IGCC.WinService.exe
CommandLine : C:\Windows\System32\DriverStore\FileRepository\
igcc_dch.inf_amd64_141eb88527011137\OneApp.
IGCC.WinService.exe
CreationClassName : Win32_Process
CreationDate : 20230717120031.402506+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : OneApp.IGCC.WinService.exe
ExecutablePath : C:\Windows\System32\DriverStore\FileRepository\
igcc_dch.inf_amd64_141eb88527011137\OneApp.
IGCC.WinService.exe
ExecutionState :
Handle : 5224
HandleCount : 604
InstallDate :
KernelModeTime : 61875000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : OneApp.IGCC.WinService.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 39092
OtherTransferCount : 3003556
PageFaults : 307001
PageFileUsage : 36252
ParentProcessId : 944
PeakPageFileUsage : 36468
PeakVirtualSize : 5033791488
PeakWorkingSetSize : 174384
Priority : 8
PrivatePageCount : 37122048
ProcessId : 5224
QuotaNonPagedPoolUsage : 30
QuotaPagedPoolUsage : 420
QuotaPeakNonPagedPoolUsage : 33
QuotaPeakPagedPoolUsage : 422
ReadOperationCount : 121
ReadTransferCount : 353044
SessionId : 0
Status :
TerminationDate :
ThreadCount : 9
UserModeTime : 59062500
VirtualSize : 4983066624
WindowsVersion : 10.0.19045
WorkingSetSize : 9306112
WriteOperationCount : 12
WriteTransferCount : 1339
PSComputerName : XOANI-G1-LAPTOP
ProcessName : OneApp.IGCC.WinService.exe
Handles : 604
VM : 4983066624
WS : 9306112
Path : C:\Windows\System32\DriverStore\FileRepository\
igcc_dch.inf_amd64_141eb88527011137\OneApp.
IGCC.WinService.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5256"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5256"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k LocalService -p -s
CDPSvc
CreationClassName : Win32_Process
CreationDate : 20230717120031.415533+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 5256
HandleCount : 366
InstallDate :
KernelModeTime : 102187500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 230118
OtherTransferCount : 9716340
PageFaults : 62690
PageFileUsage : 4976
ParentProcessId : 944
PeakPageFileUsage : 5192
PeakVirtualSize : 2203445800960
PeakWorkingSetSize : 19372
Priority : 8
PrivatePageCount : 5095424
ProcessId : 5256
QuotaNonPagedPoolUsage : 24
QuotaPagedPoolUsage : 168
QuotaPeakNonPagedPoolUsage : 26
QuotaPeakPagedPoolUsage : 169
ReadOperationCount : 11
ReadTransferCount : 4854
SessionId : 0
Status :
TerminationDate :
ThreadCount : 8
UserModeTime : 119218750
VirtualSize : 2203442130944
WindowsVersion : 10.0.19045
WorkingSetSize : 9482240
WriteOperationCount : 4
WriteTransferCount : 4198
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 366
VM : 2203442130944
WS : 9482240
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5272"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5272"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k netsvcs -p -s
IKEEXT
CreationClassName : Win32_Process
CreationDate : 20230717120031.435032+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 5272
HandleCount : 275
InstallDate :
KernelModeTime : 247812500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2528185
OtherTransferCount : 133844110
PageFaults : 1650450
PageFileUsage : 2996
ParentProcessId : 944
PeakPageFileUsage : 3132
PeakVirtualSize : 2203401273344
PeakWorkingSetSize : 8644
Priority : 8
PrivatePageCount : 3067904
ProcessId : 5272
QuotaNonPagedPoolUsage : 15
QuotaPagedPoolUsage : 88
QuotaPeakNonPagedPoolUsage : 17
QuotaPeakPagedPoolUsage : 89
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 8
UserModeTime : 110937500
VirtualSize : 2203401269248
WindowsVersion : 10.0.19045
WorkingSetSize : 3313664
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 275
VM : 2203401269248
WS : 3313664
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5340"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5340"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k NetSvcs -p -s
iphlpsvc
CreationClassName : Win32_Process
CreationDate : 20230717120031.476955+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 5340
HandleCount : 369
InstallDate :
KernelModeTime : 87812500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 130448
OtherTransferCount : 13239844
PageFaults : 21888
PageFileUsage : 3076
ParentProcessId : 944
PeakPageFileUsage : 3652
PeakVirtualSize : 2203413311488
PeakWorkingSetSize : 11628
Priority : 8
PrivatePageCount : 3149824
ProcessId : 5340
QuotaNonPagedPoolUsage : 18
QuotaPagedPoolUsage : 101
QuotaPeakNonPagedPoolUsage : 21
QuotaPeakPagedPoolUsage : 101
ReadOperationCount : 1
ReadTransferCount : 116
SessionId : 0
Status :
TerminationDate :
ThreadCount : 7
UserModeTime : 48437500
VirtualSize : 2203404828672
WindowsVersion : 10.0.19045
WorkingSetSize : 4022272
WriteOperationCount : 1
WriteTransferCount : 160
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 369
VM : 2203404828672
WS : 4022272
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5416"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5416"
Caption : dptf_helper.exe
CommandLine : "C:\Windows\system32\Intel\DPTF\dptf_helper.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120031.507797+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : dptf_helper.exe
ExecutablePath : C:\Windows\system32\Intel\DPTF\dptf_helper.exe
ExecutionState :
Handle : 5416
HandleCount : 67
InstallDate :
KernelModeTime : 844218750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : dptf_helper.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 94
OtherTransferCount : 2068
PageFaults : 1874
PageFileUsage : 1436
ParentProcessId : 5208
PeakPageFileUsage : 1468
PeakVirtualSize : 2203403993088
PeakWorkingSetSize : 5164
Priority : 8
PrivatePageCount : 1470464
ProcessId : 5416
QuotaNonPagedPoolUsage : 7
QuotaPagedPoolUsage : 91
QuotaPeakNonPagedPoolUsage : 7
QuotaPeakPagedPoolUsage : 91
ReadOperationCount : 1
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 325000000
VirtualSize : 2203401895936
WindowsVersion : 10.0.19045
WorkingSetSize : 1241088
WriteOperationCount : 47
WriteTransferCount : 47643
PSComputerName : XOANI-G1-LAPTOP
ProcessName : dptf_helper.exe
Handles : 67
VM : 2203401895936
WS : 1241088
Path : C:\Windows\system32\Intel\DPTF\dptf_helper.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5424"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5424"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k LocalService -p -s
SstpSvc
CreationClassName : Win32_Process
CreationDate : 20230717120031.510419+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 5424
HandleCount : 133
InstallDate :
KernelModeTime : 937500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 87
OtherTransferCount : 1016
PageFaults : 7008
PageFileUsage : 1636
ParentProcessId : 944
PeakPageFileUsage : 1796
PeakVirtualSize : 2203393871872
PeakWorkingSetSize : 7216
Priority : 8
PrivatePageCount : 1675264
ProcessId : 5424
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 70
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 71
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 468750
VirtualSize : 2203391770624
WindowsVersion : 10.0.19045
WorkingSetSize : 1904640
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 133
VM : 2203391770624
WS : 1904640
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5464"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5464"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k
LocalSystemNetworkRestricted -p -s TrkWks
CreationClassName : Win32_Process
CreationDate : 20230717120031.527491+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 5464
HandleCount : 128
InstallDate :
KernelModeTime : 625000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 283
OtherTransferCount : 7481
PageFaults : 2000
PageFileUsage : 1276
ParentProcessId : 944
PeakPageFileUsage : 1420
PeakVirtualSize : 2203388157952
PeakWorkingSetSize : 6048
Priority : 8
PrivatePageCount : 1306624
ProcessId : 5464
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 60
QuotaPeakNonPagedPoolUsage : 9
QuotaPeakPagedPoolUsage : 62
ReadOperationCount : 45
ReadTransferCount : 23040
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 156250
VirtualSize : 2203386056704
WindowsVersion : 10.0.19045
WorkingSetSize : 1404928
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 128
VM : 2203386056704
WS : 1404928
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5512"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5512"
Caption : WavesSysSvc64.exe
CommandLine : "C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120031.576534+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : WavesSysSvc64.exe
ExecutablePath : C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
ExecutionState :
Handle : 5512
HandleCount : 193
InstallDate :
KernelModeTime : 0
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : WavesSysSvc64.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 225
OtherTransferCount : 3644
PageFaults : 5693
PageFileUsage : 3468
ParentProcessId : 944
PeakPageFileUsage : 9048
PeakVirtualSize : 4404244480
PeakWorkingSetSize : 16136
Priority : 8
PrivatePageCount : 3551232
ProcessId : 5512
QuotaNonPagedPoolUsage : 13
QuotaPagedPoolUsage : 125
QuotaPeakNonPagedPoolUsage : 13
QuotaPeakPagedPoolUsage : 126
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 781250
VirtualSize : 4402147328
WindowsVersion : 10.0.19045
WorkingSetSize : 2514944
WriteOperationCount : 1
WriteTransferCount : 480
PSComputerName : XOANI-G1-LAPTOP
ProcessName : WavesSysSvc64.exe
Handles : 193
VM : 4402147328
WS : 2514944
Path : C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5520"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5520"
Caption : WMIRegistrationService.exe
CommandLine : C:\Windows\System32\DriverStore\FileRepository\
mewmiprov.inf_amd64_cad1db73e8c782a6\WMIReg
istrationService.exe
CreationClassName : Win32_Process
CreationDate : 20230717120031.576553+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : WMIRegistrationService.exe
ExecutablePath : C:\Windows\System32\DriverStore\FileRepository\
mewmiprov.inf_amd64_cad1db73e8c782a6\WMIReg
istrationService.exe
ExecutionState :
Handle : 5520
HandleCount : 245
InstallDate :
KernelModeTime : 468750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : WMIRegistrationService.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 686
OtherTransferCount : 12244
PageFaults : 4782
PageFileUsage : 2564
ParentProcessId : 944
PeakPageFileUsage : 3424
PeakVirtualSize : 105078784
PeakWorkingSetSize : 14000
Priority : 8
PrivatePageCount : 2625536
ProcessId : 5520
QuotaNonPagedPoolUsage : 13
QuotaPagedPoolUsage : 117
QuotaPeakNonPagedPoolUsage : 17
QuotaPeakPagedPoolUsage : 127
ReadOperationCount : 1
ReadTransferCount : 282
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 312500
VirtualSize : 89260032
WindowsVersion : 10.0.19045
WorkingSetSize : 2207744
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : WMIRegistrationService.exe
Handles : 245
VM : 89260032
WS : 2207744
Path : C:\Windows\System32\DriverStore\FileRepository\
mewmiprov.inf_amd64_cad1db73e8c782a6\WMIReg
istrationService.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5556"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5556"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k netsvcs -p -s
WpnService
CreationClassName : Win32_Process
CreationDate : 20230717120031.586119+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 5556
HandleCount : 392
InstallDate :
KernelModeTime : 251406250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 22205
OtherTransferCount : 557915
PageFaults : 72087
PageFileUsage : 4912
ParentProcessId : 944
PeakPageFileUsage : 5224
PeakVirtualSize : 2203444228096
PeakWorkingSetSize : 21480
Priority : 8
PrivatePageCount : 5029888
ProcessId : 5556
QuotaNonPagedPoolUsage : 20
QuotaPagedPoolUsage : 166
QuotaPeakNonPagedPoolUsage : 23
QuotaPeakPagedPoolUsage : 172
ReadOperationCount : 484
ReadTransferCount : 1981176
SessionId : 0
Status :
TerminationDate :
ThreadCount : 9
UserModeTime : 144531250
VirtualSize : 2203438194688
WindowsVersion : 10.0.19045
WorkingSetSize : 14258176
WriteOperationCount : 441
WriteTransferCount : 906560
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 392
VM : 2203438194688
WS : 14258176
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5644"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5644"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k netsvcs -p -s
LanmanServer
CreationClassName : Win32_Process
CreationDate : 20230717120031.604509+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 5644
HandleCount : 210
InstallDate :
KernelModeTime : 42656250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 38238
OtherTransferCount : 103314
PageFaults : 42385
PageFileUsage : 2488
ParentProcessId : 944
PeakPageFileUsage : 2596
PeakVirtualSize : 2203406069760
PeakWorkingSetSize : 9780
Priority : 8
PrivatePageCount : 2547712
ProcessId : 5644
QuotaNonPagedPoolUsage : 12
QuotaPagedPoolUsage : 88
QuotaPeakNonPagedPoolUsage : 14
QuotaPeakPagedPoolUsage : 90
ReadOperationCount : 10905
ReadTransferCount : 747992
SessionId : 0
Status :
TerminationDate :
ThreadCount : 6
UserModeTime : 22656250
VirtualSize : 2203402919936
WindowsVersion : 10.0.19045
WorkingSetSize : 4345856
WriteOperationCount : 7723
WriteTransferCount : 1995908
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 210
VM : 2203402919936
WS : 4345856
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5680"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5680"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k LocalService -p -s
WdiServiceHost
CreationClassName : Win32_Process
CreationDate : 20230717120031.636720+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 5680
HandleCount : 106
InstallDate :
KernelModeTime : 2968750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 327
OtherTransferCount : 26246
PageFaults : 12780
PageFileUsage : 1324
ParentProcessId : 944
PeakPageFileUsage : 1588
PeakVirtualSize : 2203389501440
PeakWorkingSetSize : 5932
Priority : 8
PrivatePageCount : 1355776
ProcessId : 5680
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 57
QuotaPeakNonPagedPoolUsage : 8
QuotaPeakPagedPoolUsage : 57
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 2031250
VirtualSize : 2203386355712
WindowsVersion : 10.0.19045
WorkingSetSize : 1617920
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 106
VM : 2203386355712
WS : 1617920
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5928"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5928"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k NetworkService -p -
s TapiSrv
CreationClassName : Win32_Process
CreationDate : 20230717120031.853992+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 5928
HandleCount : 210
InstallDate :
KernelModeTime : 54062500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 321
OtherTransferCount : 8466
PageFaults : 11730
PageFileUsage : 2264
ParentProcessId : 944
PeakPageFileUsage : 2428
PeakVirtualSize : 2203407572992
PeakWorkingSetSize : 7956
Priority : 8
PrivatePageCount : 2318336
ProcessId : 5928
QuotaNonPagedPoolUsage : 12
QuotaPagedPoolUsage : 86
QuotaPeakNonPagedPoolUsage : 14
QuotaPeakPagedPoolUsage : 86
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 10
UserModeTime : 23906250
VirtualSize : 2203404951552
WindowsVersion : 10.0.19045
WorkingSetSize : 2842624
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 210
VM : 2203404951552
WS : 2842624
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="6192"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="6192"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k netsvcs
CreationClassName : Win32_Process
CreationDate : 20230717120032.122636+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 6192
HandleCount : 410
InstallDate :
KernelModeTime : 55312500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 427
OtherTransferCount : 19348
PageFaults : 311811
PageFileUsage : 3836
ParentProcessId : 944
PeakPageFileUsage : 4180
PeakVirtualSize : 2203430617088
PeakWorkingSetSize : 14316
Priority : 8
PrivatePageCount : 3928064
ProcessId : 6192
QuotaNonPagedPoolUsage : 27
QuotaPagedPoolUsage : 132
QuotaPeakNonPagedPoolUsage : 28
QuotaPeakPagedPoolUsage : 133
ReadOperationCount : 9
ReadTransferCount : 1044
SessionId : 0
Status :
TerminationDate :
ThreadCount : 14
UserModeTime : 30156250
VirtualSize : 2203425349632
WindowsVersion : 10.0.19045
WorkingSetSize : 4476928
WriteOperationCount : 9
WriteTransferCount : 1440
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 410
VM : 2203425349632
WS : 4476928
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="6768"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="6768"
Caption : Apoint.exe
CommandLine : "C:\Windows\system32\DellTPad\Apoint.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120033.044519+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : Apoint.exe
ExecutablePath : C:\Windows\system32\DellTPad\Apoint.exe
ExecutionState :
Handle : 6768
HandleCount : 323
InstallDate :
KernelModeTime : 363437500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : Apoint.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 24395
OtherTransferCount : 722166
PageFaults : 6822
PageFileUsage : 3312
ParentProcessId : 4208
PeakPageFileUsage : 3536
PeakVirtualSize : 4445773824
PeakWorkingSetSize : 17988
Priority : 8
PrivatePageCount : 3391488
ProcessId : 6768
QuotaNonPagedPoolUsage : 17
QuotaPagedPoolUsage : 204
QuotaPeakNonPagedPoolUsage : 20
QuotaPeakPagedPoolUsage : 219
ReadOperationCount : 10
ReadTransferCount : 3185
SessionId : 1
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 189062500
VirtualSize : 4433965056
WindowsVersion : 10.0.19045
WorkingSetSize : 5812224
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : Apoint.exe
Handles : 323
VM : 4433965056
WS : 5812224
Path : C:\Windows\system32\DellTPad\Apoint.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="6088"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="6088"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k netsvcs -p -s
Appinfo
CreationClassName : Win32_Process
CreationDate : 20230717120034.084780+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 6088
HandleCount : 121
InstallDate :
KernelModeTime : 1562500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 361
OtherTransferCount : 9052
PageFaults : 7887
PageFileUsage : 1348
ParentProcessId : 944
PeakPageFileUsage : 1480
PeakVirtualSize : 2203392659456
PeakWorkingSetSize : 6488
Priority : 8
PrivatePageCount : 1380352
ProcessId : 6088
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 60
QuotaPeakNonPagedPoolUsage : 10
QuotaPeakPagedPoolUsage : 68
ReadOperationCount : 56
ReadTransferCount : 6680
SessionId : 0
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 156250
VirtualSize : 2203386486784
WindowsVersion : 10.0.19045
WorkingSetSize : 3440640
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 121
VM : 2203386486784
WS : 3440640
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="6452"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="6452"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k
LocalServiceNetworkRestricted -p -s lmhosts
CreationClassName : Win32_Process
CreationDate : 20230717120034.405820+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 6452
HandleCount : 112
InstallDate :
KernelModeTime : 468750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 27
OtherTransferCount : 1186
PageFaults : 5486
PageFileUsage : 1340
ParentProcessId : 944
PeakPageFileUsage : 1528
PeakVirtualSize : 2203388706816
PeakWorkingSetSize : 5880
Priority : 8
PrivatePageCount : 1372160
ProcessId : 6452
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 58
QuotaPeakNonPagedPoolUsage : 8
QuotaPeakPagedPoolUsage : 58
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 156250
VirtualSize : 2203387133952
WindowsVersion : 10.0.19045
WorkingSetSize : 1536000
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 112
VM : 2203387133952
WS : 1536000
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5412"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5412"
Caption : explorer.exe
CommandLine : C:\Windows\Explorer.EXE
CreationClassName : Win32_Process
CreationDate : 20230717120034.763655+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : explorer.exe
ExecutablePath : C:\Windows\Explorer.EXE
ExecutionState :
Handle : 5412
HandleCount : 3142
InstallDate :
KernelModeTime : 919062500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : explorer.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 392852
OtherTransferCount : 6860154
PageFaults : 42620984
PageFileUsage : 89000
ParentProcessId : 7104
PeakPageFileUsage : 102872
PeakVirtualSize : 2204173193216
PeakWorkingSetSize : 147688
Priority : 8
PrivatePageCount : 91136000
ProcessId : 5412
QuotaNonPagedPoolUsage : 97
QuotaPagedPoolUsage : 1373
QuotaPeakNonPagedPoolUsage : 105
QuotaPeakPagedPoolUsage : 1484
ReadOperationCount : 206684
ReadTransferCount : 790354929
SessionId : 1
Status :
TerminationDate :
ThreadCount : 61
UserModeTime : 1170781250
VirtualSize : 2204110532608
WindowsVersion : 10.0.19045
WorkingSetSize : 118104064
WriteOperationCount : 82
WriteTransferCount : 638893
PSComputerName : XOANI-G1-LAPTOP
ProcessName : explorer.exe
Handles : 3142
VM : 2204110532608
WS : 118104064
Path : C:\Windows\Explorer.EXE
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4268"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4268"
Caption : ApMsgFwd.exe
CommandLine : "C:\Windows\system32\DellTPad\ApMsgFwd.exe" -
s{05FA8492-C047-4207-BE65-780D8591C113}
CreationClassName : Win32_Process
CreationDate : 20230717120035.007352+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : ApMsgFwd.exe
ExecutablePath : C:\Windows\system32\DellTPad\ApMsgFwd.exe
ExecutionState :
Handle : 4268
HandleCount : 174
InstallDate :
KernelModeTime : 118906250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : ApMsgFwd.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 264
OtherTransferCount : 6438
PageFaults : 9492
PageFileUsage : 1908
ParentProcessId : 6768
PeakPageFileUsage : 1968
PeakVirtualSize : 4414111744
PeakWorkingSetSize : 31000
Priority : 8
PrivatePageCount : 1953792
ProcessId : 4268
QuotaNonPagedPoolUsage : 11
QuotaPagedPoolUsage : 155
QuotaPeakNonPagedPoolUsage : 12
QuotaPeakPagedPoolUsage : 155
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 32656250
VirtualSize : 4411772928
WindowsVersion : 10.0.19045
WorkingSetSize : 3891200
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : ApMsgFwd.exe
Handles : 174
VM : 4411772928
WS : 3891200
Path : C:\Windows\system32\DellTPad\ApMsgFwd.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5368"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5368"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalSystemNetworkRestricted -p -s PcaSvc
CreationClassName : Win32_Process
CreationDate : 20230717120035.027396+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 5368
HandleCount : 241
InstallDate :
KernelModeTime : 2187500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2606
OtherTransferCount : 71890
PageFaults : 12125
PageFileUsage : 4424
ParentProcessId : 944
PeakPageFileUsage : 4924
PeakVirtualSize : 2203513782272
PeakWorkingSetSize : 11860
Priority : 8
PrivatePageCount : 4530176
ProcessId : 5368
QuotaNonPagedPoolUsage : 13
QuotaPagedPoolUsage : 106
QuotaPeakNonPagedPoolUsage : 15
QuotaPeakPagedPoolUsage : 294
ReadOperationCount : 10
ReadTransferCount : 860356
SessionId : 0
Status :
TerminationDate :
ThreadCount : 9
UserModeTime : 1093750
VirtualSize : 2203413434368
WindowsVersion : 10.0.19045
WorkingSetSize : 5894144
WriteOperationCount : 0
WriteTransferCount : 664440
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 241
VM : 2203413434368
WS : 5894144
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="7284"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="7284"
Caption : ApRemote.exe
CommandLine : "C:\Windows\system32\DellTPad\ApRemote.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120035.223344+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : ApRemote.exe
ExecutablePath : C:\Windows\system32\DellTPad\ApRemote.exe
ExecutionState :
Handle : 7284
HandleCount : 78
InstallDate :
KernelModeTime : 625000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : ApRemote.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 80
OtherTransferCount : 2234
PageFaults : 2731
PageFileUsage : 836
ParentProcessId : 6768
PeakPageFileUsage : 904
PeakVirtualSize : 4376494080
PeakWorkingSetSize : 9252
Priority : 8
PrivatePageCount : 856064
ProcessId : 7284
QuotaNonPagedPoolUsage : 6
QuotaPagedPoolUsage : 85
QuotaPeakNonPagedPoolUsage : 6
QuotaPeakPagedPoolUsage : 85
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 1
UserModeTime : 156250
VirtualSize : 4373348352
WindowsVersion : 10.0.19045
WorkingSetSize : 684032
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : ApRemote.exe
Handles : 78
VM : 4373348352
WS : 684032
Path : C:\Windows\system32\DellTPad\ApRemote.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="7292"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="7292"
Caption : hidfind.exe
CommandLine : "C:\Windows\system32\DellTPad\HidFind.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120035.230552+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : hidfind.exe
ExecutablePath : C:\Windows\system32\DellTPad\HidFind.exe
ExecutionState :
Handle : 7292
HandleCount : 149
InstallDate :
KernelModeTime : 1875000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : hidfind.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1315
OtherTransferCount : 92126
PageFaults : 5546
PageFileUsage : 1644
ParentProcessId : 6768
PeakPageFileUsage : 1744
PeakVirtualSize : 4412850176
PeakWorkingSetSize : 8580
Priority : 8
PrivatePageCount : 1683456
ProcessId : 7292
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 132
QuotaPeakNonPagedPoolUsage : 10
QuotaPeakPagedPoolUsage : 148
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 156250
VirtualSize : 4399345664
WindowsVersion : 10.0.19045
WorkingSetSize : 4538368
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : hidfind.exe
Handles : 149
VM : 4399345664
WS : 4538368
Path : C:\Windows\system32\DellTPad\HidFind.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="7332"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="7332"
Caption : ApntEx.exe
CommandLine : "Apntex.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120035.346375+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : ApntEx.exe
ExecutablePath : C:\Windows\system32\DellTPad\Apntex.exe
ExecutionState :
Handle : 7332
HandleCount : 142
InstallDate :
KernelModeTime : 3750000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : ApntEx.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 15046
OtherTransferCount : 2875110
PageFaults : 4372
PageFileUsage : 1292
ParentProcessId : 7276
PeakPageFileUsage : 1392
PeakVirtualSize : 4398411776
PeakWorkingSetSize : 7036
Priority : 8
PrivatePageCount : 1323008
ProcessId : 7332
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 121
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 121
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 1562500
VirtualSize : 4394217472
WindowsVersion : 10.0.19045
WorkingSetSize : 3772416
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : ApntEx.exe
Handles : 142
VM : 4394217472
WS : 3772416
Path : C:\Windows\system32\DellTPad\Apntex.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="7420"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="7420"
Caption : conhost.exe
CommandLine : \??\C:\Windows\system32\conhost.exe 0x4
CreationClassName : Win32_Process
CreationDate : 20230717120035.519022+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : conhost.exe
ExecutablePath : C:\Windows\system32\conhost.exe
ExecutionState :
Handle : 7420
HandleCount : 144
InstallDate :
KernelModeTime : 625000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : conhost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 113
OtherTransferCount : 1968
PageFaults : 5237
PageFileUsage : 6772
ParentProcessId : 7332
PeakPageFileUsage : 6856
PeakVirtualSize : 2203452456960
PeakWorkingSetSize : 13640
Priority : 8
PrivatePageCount : 6934528
ProcessId : 7420
QuotaNonPagedPoolUsage : 11
QuotaPagedPoolUsage : 175
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 175
ReadOperationCount : 1
ReadTransferCount : 60
SessionId : 1
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 156250
VirtualSize : 2203450884096
WindowsVersion : 10.0.19045
WorkingSetSize : 4435968
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : conhost.exe
Handles : 144
VM : 2203450884096
WS : 4435968
Path : C:\Windows\system32\conhost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="7428"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="7428"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k ClipboardSvcGroup -
p -s cbdhsvc
CreationClassName : Win32_Process
CreationDate : 20230717120035.520142+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 7428
HandleCount : 297
InstallDate :
KernelModeTime : 48437500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 454
OtherTransferCount : 9040
PageFaults : 22284
PageFileUsage : 3872
ParentProcessId : 944
PeakPageFileUsage : 4232
PeakVirtualSize : 2203491430400
PeakWorkingSetSize : 17812
Priority : 8
PrivatePageCount : 3964928
ProcessId : 7428
QuotaNonPagedPoolUsage : 15
QuotaPagedPoolUsage : 231
QuotaPeakNonPagedPoolUsage : 17
QuotaPeakPagedPoolUsage : 240
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 7
UserModeTime : 193125000
VirtualSize : 2203485655040
WindowsVersion : 10.0.19045
WorkingSetSize : 15241216
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 297
VM : 2203485655040
WS : 15241216
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="7696"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="7696"
Caption : taskhostw.exe
CommandLine : taskhostw.exe
CreationClassName : Win32_Process
CreationDate : 20230717120036.177217+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : taskhostw.exe
ExecutablePath : C:\Windows\system32\taskhostw.exe
ExecutionState :
Handle : 7696
HandleCount : 381
InstallDate :
KernelModeTime : 28437500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : taskhostw.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 3085
OtherTransferCount : 50588
PageFaults : 50891
PageFileUsage : 6944
ParentProcessId : 2016
PeakPageFileUsage : 9508
PeakVirtualSize : 2203516768256
PeakWorkingSetSize : 28008
Priority : 8
PrivatePageCount : 7110656
ProcessId : 7696
QuotaNonPagedPoolUsage : 23
QuotaPagedPoolUsage : 300
QuotaPeakNonPagedPoolUsage : 25
QuotaPeakPagedPoolUsage : 312
ReadOperationCount : 57
ReadTransferCount : 4109484
SessionId : 1
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 56093750
VirtualSize : 2203509121024
WindowsVersion : 10.0.19045
WorkingSetSize : 22052864
WriteOperationCount : 42
WriteTransferCount : 3948
PSComputerName : XOANI-G1-LAPTOP
ProcessName : taskhostw.exe
Handles : 381
VM : 2203509121024
WS : 22052864
Path : C:\Windows\system32\taskhostw.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="7976"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="7976"
Caption : StartMenuExperienceHost.exe
CommandLine : "C:\Windows\SystemApps\
Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuEx
perienceHost.exe" -
ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
CreationClassName : Win32_Process
CreationDate : 20230717120036.553178+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : StartMenuExperienceHost.exe
ExecutablePath : C:\Windows\SystemApps\
Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExp
erienceHost.exe
ExecutionState :
Handle : 7976
HandleCount : 600
InstallDate :
KernelModeTime : 25781250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : StartMenuExperienceHost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1964
OtherTransferCount : 46994
PageFaults : 74965
PageFileUsage : 17788
ParentProcessId : 1176
PeakPageFileUsage : 24788
PeakVirtualSize : 2203818225664
PeakWorkingSetSize : 77992
Priority : 8
PrivatePageCount : 18214912
ProcessId : 7976
QuotaNonPagedPoolUsage : 30
QuotaPagedPoolUsage : 538
QuotaPeakNonPagedPoolUsage : 33
QuotaPeakPagedPoolUsage : 978
ReadOperationCount : 61
ReadTransferCount : 269181
SessionId : 1
Status :
TerminationDate :
ThreadCount : 12
UserModeTime : 70468750
VirtualSize : 2203639259136
WindowsVersion : 10.0.19045
WorkingSetSize : 45641728
WriteOperationCount : 590
WriteTransferCount : 82456
PSComputerName : XOANI-G1-LAPTOP
ProcessName : StartMenuExperienceHost.exe
Handles : 600
VM : 2203639259136
WS : 45641728
Path : C:\Windows\SystemApps\
Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExp
erienceHost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="8128"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="8128"
Caption : RuntimeBroker.exe
CommandLine : C:\Windows\System32\RuntimeBroker.exe -Embedding
CreationClassName : Win32_Process
CreationDate : 20230717120036.781034+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : RuntimeBroker.exe
ExecutablePath : C:\Windows\System32\RuntimeBroker.exe
ExecutionState :
Handle : 8128
HandleCount : 269
InstallDate :
KernelModeTime : 52187500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : RuntimeBroker.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 33572
OtherTransferCount : 725700
PageFaults : 120630
PageFileUsage : 7676
ParentProcessId : 1176
PeakPageFileUsage : 9440
PeakVirtualSize : 2203501359104
PeakWorkingSetSize : 30264
Priority : 8
PrivatePageCount : 7860224
ProcessId : 8128
QuotaNonPagedPoolUsage : 17
QuotaPagedPoolUsage : 216
QuotaPeakNonPagedPoolUsage : 22
QuotaPeakPagedPoolUsage : 277
ReadOperationCount : 44
ReadTransferCount : 132121
SessionId : 1
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 62500000
VirtualSize : 2203470413824
WindowsVersion : 10.0.19045
WorkingSetSize : 18644992
WriteOperationCount : 1
WriteTransferCount : 160
PSComputerName : XOANI-G1-LAPTOP
ProcessName : RuntimeBroker.exe
Handles : 269
VM : 2203470413824
WS : 18644992
Path : C:\Windows\System32\RuntimeBroker.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="8136"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="8136"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k netsvcs -p -s
UsoSvc
CreationClassName : Win32_Process
CreationDate : 20230717120036.788270+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 8136
HandleCount : 404
InstallDate :
KernelModeTime : 51562500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 41205
OtherTransferCount : 3161408
PageFaults : 55003
PageFileUsage : 7804
ParentProcessId : 944
PeakPageFileUsage : 9948
PeakVirtualSize : 2203483922432
PeakWorkingSetSize : 28948
Priority : 8
PrivatePageCount : 7991296
ProcessId : 8136
QuotaNonPagedPoolUsage : 22
QuotaPagedPoolUsage : 193
QuotaPeakNonPagedPoolUsage : 25
QuotaPeakPagedPoolUsage : 237
ReadOperationCount : 29
ReadTransferCount : 912638
SessionId : 0
Status :
TerminationDate :
ThreadCount : 9
UserModeTime : 34375000
VirtualSize : 2203457105920
WindowsVersion : 10.0.19045
WorkingSetSize : 16343040
WriteOperationCount : 25
WriteTransferCount : 98816
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 404
VM : 2203457105920
WS : 16343040
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4644"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4644"
Caption : SearchApp.exe
CommandLine : "C:\Windows\SystemApps\
Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe" -ServerName:C
ortanaUI.AppX8z9r6jm96hw4bsbneegw0kyxx296wr9t.mca
CreationClassName : Win32_Process
CreationDate : 20230717120037.119477+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : SearchApp.exe
ExecutablePath : C:\Windows\SystemApps\
Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
ExecutionState :
Handle : 4644
HandleCount : 1388
InstallDate :
KernelModeTime : 119218750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : SearchApp.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 52036
OtherTransferCount : 2449872
PageFaults : 1701229
PageFileUsage : 150648
ParentProcessId : 1176
PeakPageFileUsage : 172240
PeakVirtualSize : 2238839169024
PeakWorkingSetSize : 237288
Priority : 8
PrivatePageCount : 154263552
ProcessId : 4644
QuotaNonPagedPoolUsage : 113
QuotaPagedPoolUsage : 1083
QuotaPeakNonPagedPoolUsage : 164
QuotaPeakPagedPoolUsage : 1159
ReadOperationCount : 45951
ReadTransferCount : 194190597
SessionId : 1
Status :
TerminationDate :
ThreadCount : 39
UserModeTime : 320468750
VirtualSize : 2238820163584
WindowsVersion : 10.0.19045
WorkingSetSize : 201117696
WriteOperationCount : 1719
WriteTransferCount : 86941043
PSComputerName : XOANI-G1-LAPTOP
ProcessName : SearchApp.exe
Handles : 1388
VM : 2238820163584
WS : 201117696
Path : C:\Windows\SystemApps\
Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="8320"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="8320"
Caption : SearchIndexer.exe
CommandLine : C:\Windows\system32\SearchIndexer.exe /Embedding
CreationClassName : Win32_Process
CreationDate : 20230717120037.405889+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : SearchIndexer.exe
ExecutablePath : C:\Windows\system32\SearchIndexer.exe
ExecutionState :
Handle : 8320
HandleCount : 716
InstallDate :
KernelModeTime : 422656250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : SearchIndexer.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 430788
OtherTransferCount : 136118354
PageFaults : 107512
PageFileUsage : 24184
ParentProcessId : 944
PeakPageFileUsage : 25236
PeakVirtualSize : 2203586981888
PeakWorkingSetSize : 31124
Priority : 8
PrivatePageCount : 24764416
ProcessId : 8320
QuotaNonPagedPoolUsage : 43
QuotaPagedPoolUsage : 246
QuotaPeakNonPagedPoolUsage : 46
QuotaPeakPagedPoolUsage : 248
ReadOperationCount : 19511
ReadTransferCount : 8850434
SessionId : 0
Status :
TerminationDate :
ThreadCount : 18
UserModeTime : 361875000
VirtualSize : 2203579248640
WindowsVersion : 10.0.19045
WorkingSetSize : 22048768
WriteOperationCount : 18019
WriteTransferCount : 4502108
PSComputerName : XOANI-G1-LAPTOP
ProcessName : SearchIndexer.exe
Handles : 716
VM : 2203579248640
WS : 22048768
Path : C:\Windows\system32\SearchIndexer.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="8336"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="8336"
Caption : RuntimeBroker.exe
CommandLine : C:\Windows\System32\RuntimeBroker.exe -Embedding
CreationClassName : Win32_Process
CreationDate : 20230717120037.428336+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : RuntimeBroker.exe
ExecutablePath : C:\Windows\System32\RuntimeBroker.exe
ExecutionState :
Handle : 8336
HandleCount : 716
InstallDate :
KernelModeTime : 802500000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : RuntimeBroker.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 47627
OtherTransferCount : 1507462
PageFaults : 100912
PageFileUsage : 16352
ParentProcessId : 1176
PeakPageFileUsage : 19940
PeakVirtualSize : 2203714375680
PeakWorkingSetSize : 42668
Priority : 8
PrivatePageCount : 16744448
ProcessId : 8336
QuotaNonPagedPoolUsage : 31
QuotaPagedPoolUsage : 384
QuotaPeakNonPagedPoolUsage : 35
QuotaPeakPagedPoolUsage : 641
ReadOperationCount : 9436
ReadTransferCount : 1687842
SessionId : 1
Status :
TerminationDate :
ThreadCount : 21
UserModeTime : 522812500
VirtualSize : 2203580133376
WindowsVersion : 10.0.19045
WorkingSetSize : 39051264
WriteOperationCount : 2
WriteTransferCount : 248
PSComputerName : XOANI-G1-LAPTOP
ProcessName : RuntimeBroker.exe
Handles : 716
VM : 2203580133376
WS : 39051264
Path : C:\Windows\System32\RuntimeBroker.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="8500"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="8500"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k LocalService -p -s
fdPHost
CreationClassName : Win32_Process
CreationDate : 20230717120037.805063+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 8500
HandleCount : 137
InstallDate :
KernelModeTime : 468750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 81
OtherTransferCount : 1778
PageFaults : 7074
PageFileUsage : 1584
ParentProcessId : 944
PeakPageFileUsage : 1844
PeakVirtualSize : 2203397369856
PeakWorkingSetSize : 7756
Priority : 8
PrivatePageCount : 1622016
ProcessId : 8500
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 72
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 72
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 312500
VirtualSize : 2203393175552
WindowsVersion : 10.0.19045
WorkingSetSize : 1863680
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 137
VM : 2203393175552
WS : 1863680
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="8608"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="8608"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalServiceAndNoImpersonation -p -s FDResPub
CreationClassName : Win32_Process
CreationDate : 20230717120037.967334+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 8608
HandleCount : 274
InstallDate :
KernelModeTime : 151406250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 184956
OtherTransferCount : 104504209
PageFaults : 144468
PageFileUsage : 3388
ParentProcessId : 944
PeakPageFileUsage : 3632
PeakVirtualSize : 2203405877248
PeakWorkingSetSize : 10368
Priority : 8
PrivatePageCount : 3469312
ProcessId : 8608
QuotaNonPagedPoolUsage : 17
QuotaPagedPoolUsage : 94
QuotaPeakNonPagedPoolUsage : 19
QuotaPeakPagedPoolUsage : 95
ReadOperationCount : 1
ReadTransferCount : 116
SessionId : 0
Status :
TerminationDate :
ThreadCount : 11
UserModeTime : 191718750
VirtualSize : 2203403780096
WindowsVersion : 10.0.19045
WorkingSetSize : 4980736
WriteOperationCount : 1
WriteTransferCount : 160
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 274
VM : 2203403780096
WS : 4980736
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="7620"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="7620"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k LocalService -p -s
LicenseManager
CreationClassName : Win32_Process
CreationDate : 20230717120041.448374+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 7620
HandleCount : 283
InstallDate :
KernelModeTime : 18281250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2283
OtherTransferCount : 316296
PageFaults : 44111
PageFileUsage : 4280
ParentProcessId : 944
PeakPageFileUsage : 4856
PeakVirtualSize : 2203438604288
PeakWorkingSetSize : 22000
Priority : 8
PrivatePageCount : 4382720
ProcessId : 7620
QuotaNonPagedPoolUsage : 17
QuotaPagedPoolUsage : 148
QuotaPeakNonPagedPoolUsage : 22
QuotaPeakPagedPoolUsage : 151
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 18281250
VirtualSize : 2203431247872
WindowsVersion : 10.0.19045
WorkingSetSize : 11644928
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 283
VM : 2203431247872
WS : 11644928
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="9580"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="9580"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalServiceAndNoImpersonation -p -s SSDPSRV
CreationClassName : Win32_Process
CreationDate : 20230717120042.258248+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 9580
HandleCount : 234
InstallDate :
KernelModeTime : 392343750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 585686
OtherTransferCount : 9426240
PageFaults : 19189
PageFileUsage : 2272
ParentProcessId : 944
PeakPageFileUsage : 2400
PeakVirtualSize : 2203402297344
PeakWorkingSetSize : 8052
Priority : 8
PrivatePageCount : 2326528
ProcessId : 9580
QuotaNonPagedPoolUsage : 16
QuotaPagedPoolUsage : 78
QuotaPeakNonPagedPoolUsage : 18
QuotaPeakPagedPoolUsage : 79
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 9
UserModeTime : 752968750
VirtualSize : 2203399675904
WindowsVersion : 10.0.19045
WorkingSetSize : 3387392
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 234
VM : 2203399675904
WS : 3387392
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="9948"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="9948"
Caption : PhoneExperienceHost.exe
CommandLine : "C:\Program Files\WindowsApps\
Microsoft.YourPhone_1.23052.122.0_x64__8wekyb3d8bbwe\PhoneEx
perienceHost.exe" -ComServer:Background -Embedding
CreationClassName : Win32_Process
CreationDate : 20230717120044.558655+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : PhoneExperienceHost.exe
ExecutablePath : C:\Program Files\WindowsApps\
Microsoft.YourPhone_1.23052.122.0_x64__8wekyb3d8bbwe\PhoneExp
erienceHost.exe
ExecutionState :
Handle : 9948
HandleCount : 1291
InstallDate :
KernelModeTime : 72187500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : PhoneExperienceHost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 18476
OtherTransferCount : 624394
PageFaults : 156279
PageFileUsage : 52732
ParentProcessId : 1176
PeakPageFileUsage : 57916
PeakVirtualSize : 2481435164672
PeakWorkingSetSize : 151096
Priority : 8
PrivatePageCount : 53997568
ProcessId : 9948
QuotaNonPagedPoolUsage : 97
QuotaPagedPoolUsage : 1058
QuotaPeakNonPagedPoolUsage : 106
QuotaPeakPagedPoolUsage : 1098
ReadOperationCount : 499
ReadTransferCount : 4534952
SessionId : 1
Status :
TerminationDate :
ThreadCount : 16
UserModeTime : 81406250
VirtualSize : 2481404801024
WindowsVersion : 10.0.19045
WorkingSetSize : 49967104
WriteOperationCount : 4
WriteTransferCount : 372
PSComputerName : XOANI-G1-LAPTOP
ProcessName : PhoneExperienceHost.exe
Handles : 1291
VM : 2481404801024
WS : 49967104
Path : C:\Program Files\WindowsApps\
Microsoft.YourPhone_1.23052.122.0_x64__8wekyb3d8bbwe\PhoneExp
erienceHost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="10208"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="10208"
Caption : dllhost.exe
CommandLine : C:\Windows\system32\DllHost.exe /Processid:{973D20D7-
562D-44B9-B70B-5A0F49CCDF3F}
CreationClassName : Win32_Process
CreationDate : 20230717120045.712691+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : dllhost.exe
ExecutablePath : C:\Windows\system32\DllHost.exe
ExecutionState :
Handle : 10208
HandleCount : 223
InstallDate :
KernelModeTime : 2656250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : dllhost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2688
OtherTransferCount : 56980
PageFaults : 7138
PageFileUsage : 3800
ParentProcessId : 1176
PeakPageFileUsage : 5360
PeakVirtualSize : 2203509927936
PeakWorkingSetSize : 12044
Priority : 8
PrivatePageCount : 3891200
ProcessId : 10208
QuotaNonPagedPoolUsage : 17
QuotaPagedPoolUsage : 149
QuotaPeakNonPagedPoolUsage : 33
QuotaPeakPagedPoolUsage : 155
ReadOperationCount : 107
ReadTransferCount : 6684672
SessionId : 1
Status :
TerminationDate :
ThreadCount : 6
UserModeTime : 3437500
VirtualSize : 2203502940160
WindowsVersion : 10.0.19045
WorkingSetSize : 8523776
WriteOperationCount : 135
WriteTransferCount : 1966080
PSComputerName : XOANI-G1-LAPTOP
ProcessName : dllhost.exe
Handles : 223
VM : 2203502940160
WS : 8523776
Path : C:\Windows\system32\DllHost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="9384"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="9384"
Caption : RuntimeBroker.exe
CommandLine : C:\Windows\System32\RuntimeBroker.exe -Embedding
CreationClassName : Win32_Process
CreationDate : 20230717120045.810166+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : RuntimeBroker.exe
ExecutablePath : C:\Windows\System32\RuntimeBroker.exe
ExecutionState :
Handle : 9384
HandleCount : 338
InstallDate :
KernelModeTime : 70468750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : RuntimeBroker.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 46394
OtherTransferCount : 379244
PageFaults : 92331
PageFileUsage : 4680
ParentProcessId : 1176
PeakPageFileUsage : 5192
PeakVirtualSize : 2203491176448
PeakWorkingSetSize : 21812
Priority : 8
PrivatePageCount : 4792320
ProcessId : 9384
QuotaNonPagedPoolUsage : 20
QuotaPagedPoolUsage : 263
QuotaPeakNonPagedPoolUsage : 20
QuotaPeakPagedPoolUsage : 267
ReadOperationCount : 19334
ReadTransferCount : 4640269
SessionId : 1
Status :
TerminationDate :
ThreadCount : 9
UserModeTime : 39062500
VirtualSize : 2203489996800
WindowsVersion : 10.0.19045
WorkingSetSize : 17715200
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : RuntimeBroker.exe
Handles : 338
VM : 2203489996800
WS : 17715200
Path : C:\Windows\System32\RuntimeBroker.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="10252"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="10252"
Caption : RuntimeBroker.exe
CommandLine : C:\Windows\System32\RuntimeBroker.exe -Embedding
CreationClassName : Win32_Process
CreationDate : 20230717120047.655629+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : RuntimeBroker.exe
ExecutablePath : C:\Windows\System32\RuntimeBroker.exe
ExecutionState :
Handle : 10252
HandleCount : 219
InstallDate :
KernelModeTime : 2968750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : RuntimeBroker.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 449
OtherTransferCount : 11446
PageFaults : 15633
PageFileUsage : 2664
ParentProcessId : 1176
PeakPageFileUsage : 3700
PeakVirtualSize : 2203474317312
PeakWorkingSetSize : 21132
Priority : 8
PrivatePageCount : 2727936
ProcessId : 10252
QuotaNonPagedPoolUsage : 12
QuotaPagedPoolUsage : 168
QuotaPeakNonPagedPoolUsage : 16
QuotaPeakPagedPoolUsage : 233
ReadOperationCount : 3
ReadTransferCount : 4418
SessionId : 1
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 781250
VirtualSize : 2203439128576
WindowsVersion : 10.0.19045
WorkingSetSize : 3063808
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : RuntimeBroker.exe
Handles : 219
VM : 2203439128576
WS : 3063808
Path : C:\Windows\System32\RuntimeBroker.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="10488"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="10488"
Caption : SecurityHealthSystray.exe
CommandLine : "C:\Windows\System32\SecurityHealthSystray.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120049.096454+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : SecurityHealthSystray.exe
ExecutablePath : C:\Windows\System32\SecurityHealthSystray.exe
ExecutionState :
Handle : 10488
HandleCount : 201
InstallDate :
KernelModeTime : 2812500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : SecurityHealthSystray.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 136
OtherTransferCount : 2702
PageFaults : 4683
PageFileUsage : 2176
ParentProcessId : 5412
PeakPageFileUsage : 2252
PeakVirtualSize : 2203431690240
PeakWorkingSetSize : 9856
Priority : 8
PrivatePageCount : 2228224
ProcessId : 10488
QuotaNonPagedPoolUsage : 11
QuotaPagedPoolUsage : 154
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 161
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 6
UserModeTime : 1406250
VirtualSize : 2203430641664
WindowsVersion : 10.0.19045
WorkingSetSize : 5824512
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : SecurityHealthSystray.exe
Handles : 201
VM : 2203430641664
WS : 5824512
Path : C:\Windows\System32\SecurityHealthSystray.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="10572"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="10572"
Caption : SecurityHealthService.exe
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230717120049.177277+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : SecurityHealthService.exe
ExecutablePath :
ExecutionState :
Handle : 10572
HandleCount : 470
InstallDate :
KernelModeTime : 12812500
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : SecurityHealthService.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1859
OtherTransferCount : 44076
PageFaults : 10551
PageFileUsage : 5308
ParentProcessId : 944
PeakPageFileUsage : 5360
PeakVirtualSize : 2203436470272
PeakWorkingSetSize : 16180
Priority : 8
PrivatePageCount : 5435392
ProcessId : 10572
QuotaNonPagedPoolUsage : 18
QuotaPagedPoolUsage : 171
QuotaPeakNonPagedPoolUsage : 19
QuotaPeakPagedPoolUsage : 173
ReadOperationCount : 98
ReadTransferCount : 33222
SessionId : 0
Status :
TerminationDate :
ThreadCount : 17
UserModeTime : 20312500
VirtualSize : 2203435413504
WindowsVersion : 10.0.19045
WorkingSetSize : 11513856
WriteOperationCount : 1
WriteTransferCount : 4096
PSComputerName : XOANI-G1-LAPTOP
ProcessName : SecurityHealthService.exe
Handles : 470
VM : 2203435413504
WS : 11513856
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="10684"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="10684"
Caption : RtkNGUI64.exe
CommandLine : "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" /s
CreationClassName : Win32_Process
CreationDate : 20230717120049.556081+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : RtkNGUI64.exe
ExecutablePath : C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
ExecutionState :
Handle : 10684
HandleCount : 407
InstallDate :
KernelModeTime : 1562500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : RtkNGUI64.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2578
OtherTransferCount : 27601
PageFaults : 6238
PageFileUsage : 4256
ParentProcessId : 5412
PeakPageFileUsage : 4436
PeakVirtualSize : 4460253184
PeakWorkingSetSize : 14628
Priority : 8
PrivatePageCount : 4358144
ProcessId : 10684
QuotaNonPagedPoolUsage : 16
QuotaPagedPoolUsage : 240
QuotaPeakNonPagedPoolUsage : 16
QuotaPeakPagedPoolUsage : 243
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 7
UserModeTime : 781250
VirtualSize : 4453666816
WindowsVersion : 10.0.19045
WorkingSetSize : 5820416
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : RtkNGUI64.exe
Handles : 407
VM : 4453666816
WS : 5820416
Path : C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="10928"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="10928"
Caption : RAVBg64.exe
CommandLine : "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /IM
CreationClassName : Win32_Process
CreationDate : 20230717120050.262021+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : RAVBg64.exe
ExecutablePath : C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
ExecutionState :
Handle : 10928
HandleCount : 303
InstallDate :
KernelModeTime : 152968750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : RAVBg64.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 652
OtherTransferCount : 10972
PageFaults : 6077
PageFileUsage : 4388
ParentProcessId : 5412
PeakPageFileUsage : 4912
PeakVirtualSize : 4437491712
PeakWorkingSetSize : 13936
Priority : 8
PrivatePageCount : 4493312
ProcessId : 10928
QuotaNonPagedPoolUsage : 14
QuotaPagedPoolUsage : 186
QuotaPeakNonPagedPoolUsage : 16
QuotaPeakPagedPoolUsage : 200
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 12187500
VirtualSize : 4426858496
WindowsVersion : 10.0.19045
WorkingSetSize : 6529024
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : RAVBg64.exe
Handles : 303
VM : 4426858496
WS : 6529024
Path : C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="10968"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="10968"
Caption : WavesSvc64.exe
CommandLine : "C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe" -
Jack
CreationClassName : Win32_Process
CreationDate : 20230717120050.740919+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : WavesSvc64.exe
ExecutablePath : C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
ExecutionState :
Handle : 10968
HandleCount : 484
InstallDate :
KernelModeTime : 57500000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : WavesSvc64.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2366
OtherTransferCount : 42064
PageFaults : 21328
PageFileUsage : 18160
ParentProcessId : 5412
PeakPageFileUsage : 19424
PeakVirtualSize : 4510932992
PeakWorkingSetSize : 30720
Priority : 8
PrivatePageCount : 18595840
ProcessId : 10968
QuotaNonPagedPoolUsage : 19
QuotaPagedPoolUsage : 236
QuotaPeakNonPagedPoolUsage : 20
QuotaPeakPagedPoolUsage : 330
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 8
UserModeTime : 25156250
VirtualSize : 4469977088
WindowsVersion : 10.0.19045
WorkingSetSize : 8327168
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : WavesSvc64.exe
Handles : 484
VM : 4469977088
WS : 8327168
Path : C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="11908"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="11908"
Caption : SystemSettings.exe
CommandLine : "C:\Windows\ImmersiveControlPanel\SystemSettings.exe"
-ServerName:microsoft.windows.immers
ivecontrolpanel
CreationClassName : Win32_Process
CreationDate : 20230717120120.137090+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : SystemSettings.exe
ExecutablePath : C:\Windows\ImmersiveControlPanel\SystemSettings.exe
ExecutionState :
Handle : 11908
HandleCount : 870
InstallDate :
KernelModeTime : 8125000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : SystemSettings.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2123
OtherTransferCount : 37094
PageFaults : 40301
PageFileUsage : 24872
ParentProcessId : 1176
PeakPageFileUsage : 66820
PeakVirtualSize : 2203859398656
PeakWorkingSetSize : 124152
Priority : 8
PrivatePageCount : 25468928
ProcessId : 11908
QuotaNonPagedPoolUsage : 41
QuotaPagedPoolUsage : 922
QuotaPeakNonPagedPoolUsage : 43
QuotaPeakPagedPoolUsage : 1040
ReadOperationCount : 63
ReadTransferCount : 36185
SessionId : 1
Status :
TerminationDate :
ThreadCount : 20
UserModeTime : 5625000
VirtualSize : 2203836235776
WindowsVersion : 10.0.19045
WorkingSetSize : 1683456
WriteOperationCount : 7
WriteTransferCount : 240
PSComputerName : XOANI-G1-LAPTOP
ProcessName : SystemSettings.exe
Handles : 870
VM : 2203836235776
WS : 1683456
Path : C:\Windows\ImmersiveControlPanel\SystemSettings.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="11916"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="11916"
Caption : ApplicationFrameHost.exe
CommandLine : C:\Windows\system32\ApplicationFrameHost.exe -
Embedding
CreationClassName : Win32_Process
CreationDate : 20230717120120.140164+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : ApplicationFrameHost.exe
ExecutablePath : C:\Windows\system32\ApplicationFrameHost.exe
ExecutionState :
Handle : 11916
HandleCount : 337
InstallDate :
KernelModeTime : 2031250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : ApplicationFrameHost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 441
OtherTransferCount : 13896
PageFaults : 12721
PageFileUsage : 12664
ParentProcessId : 1176
PeakPageFileUsage : 13488
PeakVirtualSize : 2203583598592
PeakWorkingSetSize : 34208
Priority : 8
PrivatePageCount : 12967936
ProcessId : 11916
QuotaNonPagedPoolUsage : 23
QuotaPagedPoolUsage : 333
QuotaPeakNonPagedPoolUsage : 26
QuotaPeakPagedPoolUsage : 361
ReadOperationCount : 9
ReadTransferCount : 17146
SessionId : 1
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 1093750
VirtualSize : 2203570892800
WindowsVersion : 10.0.19045
WorkingSetSize : 7884800
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : ApplicationFrameHost.exe
Handles : 337
VM : 2203570892800
WS : 7884800
Path : C:\Windows\system32\ApplicationFrameHost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="12200"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="12200"
Caption : UserOOBEBroker.exe
CommandLine : C:\Windows\System32\oobe\UserOOBEBroker.exe -Embedding
CreationClassName : Win32_Process
CreationDate : 20230717120121.207389+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : UserOOBEBroker.exe
ExecutablePath : C:\Windows\System32\oobe\UserOOBEBroker.exe
ExecutionState :
Handle : 12200
HandleCount : 141
InstallDate :
KernelModeTime : 12500000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : UserOOBEBroker.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 405
OtherTransferCount : 14302
PageFaults : 37073
PageFileUsage : 4896
ParentProcessId : 1176
PeakPageFileUsage : 4968
PeakVirtualSize : 2203430633472
PeakWorkingSetSize : 12280
Priority : 8
PrivatePageCount : 5013504
ProcessId : 12200
QuotaNonPagedPoolUsage : 14
QuotaPagedPoolUsage : 127
QuotaPeakNonPagedPoolUsage : 14
QuotaPeakPagedPoolUsage : 129
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 11562500
VirtualSize : 2203429568512
WindowsVersion : 10.0.19045
WorkingSetSize : 5435392
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : UserOOBEBroker.exe
Handles : 141
VM : 2203429568512
WS : 5435392
Path : C:\Windows\System32\oobe\UserOOBEBroker.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="8580"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="8580"
Caption : IAStorIcon.exe
CommandLine : "C:\Program Files\Intel\Intel(R) Rapid Storage
Technology\IAStorIcon.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120152.933383+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : IAStorIcon.exe
ExecutablePath : C:\Program Files\Intel\Intel(R) Rapid Storage
Technology\IAStorIcon.exe
ExecutionState :
Handle : 8580
HandleCount : 671
InstallDate :
KernelModeTime : 5468750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : IAStorIcon.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1485
OtherTransferCount : 20856
PageFaults : 49209
PageFileUsage : 34072
ParentProcessId : 10796
PeakPageFileUsage : 35044
PeakVirtualSize : 5072257024
PeakWorkingSetSize : 147748
Priority : 8
PrivatePageCount : 34889728
ProcessId : 8580
QuotaNonPagedPoolUsage : 24
QuotaPagedPoolUsage : 498
QuotaPeakNonPagedPoolUsage : 28
QuotaPeakPagedPoolUsage : 512
ReadOperationCount : 453
ReadTransferCount : 322823
SessionId : 1
Status :
TerminationDate :
ThreadCount : 6
UserModeTime : 5156250
VirtualSize : 5023350784
WindowsVersion : 10.0.19045
WorkingSetSize : 9670656
WriteOperationCount : 10
WriteTransferCount : 820
PSComputerName : XOANI-G1-LAPTOP
ProcessName : IAStorIcon.exe
Handles : 671
VM : 5023350784
WS : 9670656
Path : C:\Program Files\Intel\Intel(R) Rapid Storage
Technology\IAStorIcon.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1720"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1720"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k UnistackSvcGroup
CreationClassName : Win32_Process
CreationDate : 20230717120230.767023+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 1720
HandleCount : 264
InstallDate :
KernelModeTime : 1875000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 428
OtherTransferCount : 12516
PageFaults : 11748
PageFileUsage : 4768
ParentProcessId : 944
PeakPageFileUsage : 6052
PeakVirtualSize : 2203447799808
PeakWorkingSetSize : 16068
Priority : 8
PrivatePageCount : 4882432
ProcessId : 1720
QuotaNonPagedPoolUsage : 19
QuotaPagedPoolUsage : 160
QuotaPeakNonPagedPoolUsage : 20
QuotaPeakPagedPoolUsage : 160
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 625000
VirtualSize : 2203443056640
WindowsVersion : 10.0.19045
WorkingSetSize : 4284416
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 264
VM : 2203443056640
WS : 4284416
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="656"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="656"
Caption : svchost.exe
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230717120232.318203+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath :
ExecutionState :
Handle : 656
HandleCount : 258
InstallDate :
KernelModeTime : 12500000
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 3384
OtherTransferCount : 38058
PageFaults : 35130
PageFileUsage : 4144
ParentProcessId : 944
PeakPageFileUsage : 4192
PeakVirtualSize : 2203417141248
PeakWorkingSetSize : 12704
Priority : 8
PrivatePageCount : 4243456
ProcessId : 656
QuotaNonPagedPoolUsage : 15
QuotaPagedPoolUsage : 102
QuotaPeakNonPagedPoolUsage : 15
QuotaPeakPagedPoolUsage : 113
ReadOperationCount : 200
ReadTransferCount : 54284
SessionId : 0
Status :
TerminationDate :
ThreadCount : 14
UserModeTime : 10156250
VirtualSize : 2203411939328
WindowsVersion : 10.0.19045
WorkingSetSize : 8249344
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 258
VM : 2203411939328
WS : 8249344
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2660"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2660"
Caption : DDVRulesProcessor.exe
CommandLine : "C:\Program Files\Dell\DellDataVault\
DDVRulesProcessor.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120232.565508+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : DDVRulesProcessor.exe
ExecutablePath : C:\Program Files\Dell\DellDataVault\
DDVRulesProcessor.exe
ExecutionState :
Handle : 2660
HandleCount : 278
InstallDate :
KernelModeTime : 17968750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : DDVRulesProcessor.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 45697
OtherTransferCount : 4950508
PageFaults : 94920
PageFileUsage : 17684
ParentProcessId : 944
PeakPageFileUsage : 18920
PeakVirtualSize : 4432404480
PeakWorkingSetSize : 44040
Priority : 8
PrivatePageCount : 18108416
ProcessId : 2660
QuotaNonPagedPoolUsage : 17
QuotaPagedPoolUsage : 147
QuotaPeakNonPagedPoolUsage : 18
QuotaPeakPagedPoolUsage : 154
ReadOperationCount : 445
ReadTransferCount : 37040774
SessionId : 0
Status :
TerminationDate :
ThreadCount : 9
UserModeTime : 21250000
VirtualSize : 4428210176
WindowsVersion : 10.0.19045
WorkingSetSize : 6582272
WriteOperationCount : 24
WriteTransferCount : 1903
PSComputerName : XOANI-G1-LAPTOP
ProcessName : DDVRulesProcessor.exe
Handles : 278
VM : 4428210176
WS : 6582272
Path : C:\Program Files\Dell\DellDataVault\
DDVRulesProcessor.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="10540"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="10540"
Caption : ServiceShell.exe
CommandLine : "C:\Program Files (x86)\Dell\UpdateService\
ServiceShell.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120234.407071+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : ServiceShell.exe
ExecutablePath : C:\Program Files (x86)\Dell\UpdateService\
ServiceShell.exe
ExecutionState :
Handle : 10540
HandleCount : 1529
InstallDate :
KernelModeTime : 187997656250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : ServiceShell.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 246869677
OtherTransferCount : 4071338760
PageFaults : 1044304533
PageFileUsage : 112108
ParentProcessId : 944
PeakPageFileUsage : 128908
PeakVirtualSize : 5095165952
PeakWorkingSetSize : 230248
Priority : 8
PrivatePageCount : 114798592
ProcessId : 10540
QuotaNonPagedPoolUsage : 70
QuotaPagedPoolUsage : 513
QuotaPeakNonPagedPoolUsage : 82
QuotaPeakPagedPoolUsage : 606
ReadOperationCount : 12163566
ReadTransferCount : 891445552953
SessionId : 0
Status :
TerminationDate :
ThreadCount : 33
UserModeTime : 407090000000
VirtualSize : 5050986496
WindowsVersion : 10.0.19045
WorkingSetSize : 113672192
WriteOperationCount : 1726639
WriteTransferCount : 2692222345
PSComputerName : XOANI-G1-LAPTOP
ProcessName : ServiceShell.exe
Handles : 1529
VM : 5050986496
WS : 113672192
Path : C:\Program Files (x86)\Dell\UpdateService\
ServiceShell.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4436"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4436"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
NetworkServiceNetworkRestricted -p -s PolicyAgent
CreationClassName : Win32_Process
CreationDate : 20230717120240.107397+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 4436
HandleCount : 171
InstallDate :
KernelModeTime : 2343750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 905
OtherTransferCount : 20273
PageFaults : 30254
PageFileUsage : 3800
ParentProcessId : 944
PeakPageFileUsage : 5400
PeakVirtualSize : 2203404513280
PeakWorkingSetSize : 10796
Priority : 8
PrivatePageCount : 3891200
ProcessId : 4436
QuotaNonPagedPoolUsage : 15
QuotaPagedPoolUsage : 66
QuotaPeakNonPagedPoolUsage : 16
QuotaPeakPagedPoolUsage : 67
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 6
UserModeTime : 2343750
VirtualSize : 2203404062720
WindowsVersion : 10.0.19045
WorkingSetSize : 4632576
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 171
VM : 2203404062720
WS : 4632576
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="6268"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="6268"
Caption : Dell.TechHub.exe
CommandLine : "C:\Program Files\Dell\TechHub\Dell.TechHub.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120249.433275+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : Dell.TechHub.exe
ExecutablePath : C:\Program Files\Dell\TechHub\Dell.TechHub.exe
ExecutionState :
Handle : 6268
HandleCount : 713
InstallDate :
KernelModeTime : 31250000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : Dell.TechHub.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 52010
OtherTransferCount : 3111364
PageFaults : 74607
PageFileUsage : 42116
ParentProcessId : 944
PeakPageFileUsage : 42776
PeakVirtualSize : 2204153331712
PeakWorkingSetSize : 102160
Priority : 8
PrivatePageCount : 43126784
ProcessId : 6268
QuotaNonPagedPoolUsage : 63
QuotaPagedPoolUsage : 313
QuotaPeakNonPagedPoolUsage : 82
QuotaPeakPagedPoolUsage : 321
ReadOperationCount : 807
ReadTransferCount : 4273123
SessionId : 0
Status :
TerminationDate :
ThreadCount : 29
UserModeTime : 57031250
VirtualSize : 2204115714048
WindowsVersion : 10.0.19045
WorkingSetSize : 17592320
WriteOperationCount : 836
WriteTransferCount : 811755
PSComputerName : XOANI-G1-LAPTOP
ProcessName : Dell.TechHub.exe
Handles : 713
VM : 2204115714048
WS : 17592320
Path : C:\Program Files\Dell\TechHub\Dell.TechHub.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="7128"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="7128"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k
LocalSystemNetworkRestricted -p -s StorSvc
CreationClassName : Win32_Process
CreationDate : 20230717120250.382699+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 7128
HandleCount : 227
InstallDate :
KernelModeTime : 656562500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1225294
OtherTransferCount : 27415036
PageFaults : 1074958
PageFileUsage : 5108
ParentProcessId : 944
PeakPageFileUsage : 5420
PeakVirtualSize : 2203437023232
PeakWorkingSetSize : 14884
Priority : 8
PrivatePageCount : 5230592
ProcessId : 7128
QuotaNonPagedPoolUsage : 16
QuotaPagedPoolUsage : 114
QuotaPeakNonPagedPoolUsage : 19
QuotaPeakPagedPoolUsage : 129
ReadOperationCount : 2
ReadTransferCount : 24
SessionId : 0
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 340937500
VirtualSize : 2203425988608
WindowsVersion : 10.0.19045
WorkingSetSize : 7921664
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 227
VM : 2203425988608
WS : 7921664
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="7728"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="7728"
Caption : IAStorDataMgrSvc.exe
CommandLine : "C:\Program Files\Intel\Intel(R) Rapid Storage
Technology\IAStorDataMgrSvc.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120250.871074+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : IAStorDataMgrSvc.exe
ExecutablePath : C:\Program Files\Intel\Intel(R) Rapid Storage
Technology\IAStorDataMgrSvc.exe
ExecutionState :
Handle : 7728
HandleCount : 448
InstallDate :
KernelModeTime : 67187500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : IAStorDataMgrSvc.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 18270
OtherTransferCount : 24681878
PageFaults : 237639
PageFileUsage : 160676
ParentProcessId : 944
PeakPageFileUsage : 165580
PeakVirtualSize : 5052723200
PeakWorkingSetSize : 280268
Priority : 8
PrivatePageCount : 164532224
ProcessId : 7728
QuotaNonPagedPoolUsage : 34
QuotaPagedPoolUsage : 445
QuotaPeakNonPagedPoolUsage : 62
QuotaPeakPagedPoolUsage : 449
ReadOperationCount : 549
ReadTransferCount : 664056
SessionId : 0
Status :
TerminationDate :
ThreadCount : 8
UserModeTime : 131875000
VirtualSize : 5006192640
WindowsVersion : 10.0.19045
WorkingSetSize : 104357888
WriteOperationCount : 179
WriteTransferCount : 43115
PSComputerName : XOANI-G1-LAPTOP
ProcessName : IAStorDataMgrSvc.exe
Handles : 448
VM : 5006192640
WS : 104357888
Path : C:\Program Files\Intel\Intel(R) Rapid Storage
Technology\IAStorDataMgrSvc.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="10228"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="10228"
Caption : jhi_service.exe
CommandLine : "C:\Program Files (x86)\Intel\Intel(R) Management
Engine Components\DAL\jhi_service.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120251.104375+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : jhi_service.exe
ExecutablePath : C:\Program Files (x86)\Intel\Intel(R) Management
Engine Components\DAL\jhi_service.exe
ExecutionState :
Handle : 10228
HandleCount : 153
InstallDate :
KernelModeTime : 468750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : jhi_service.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 139
OtherTransferCount : 7827
PageFaults : 3451
PageFileUsage : 3328
ParentProcessId : 944
PeakPageFileUsage : 3408
PeakVirtualSize : 85377024
PeakWorkingSetSize : 8812
Priority : 8
PrivatePageCount : 3407872
ProcessId : 10228
QuotaNonPagedPoolUsage : 14
QuotaPagedPoolUsage : 76
QuotaPeakNonPagedPoolUsage : 15
QuotaPeakPagedPoolUsage : 77
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 468750
VirtualSize : 82743296
WindowsVersion : 10.0.19045
WorkingSetSize : 2162688
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : jhi_service.exe
Handles : 153
VM : 82743296
WS : 2162688
Path : C:\Program Files (x86)\Intel\Intel(R) Management
Engine Components\DAL\jhi_service.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="9360"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="9360"
Caption : SgrmBroker.exe
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230717120251.535344+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : SgrmBroker.exe
ExecutablePath :
ExecutionState :
Handle : 9360
HandleCount : 105
InstallDate :
KernelModeTime : 10000000
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : SgrmBroker.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2291
OtherTransferCount : 5254
PageFaults : 107303
PageFileUsage : 4316
ParentProcessId : 944
PeakPageFileUsage : 5592
PeakVirtualSize : 2203381207040
PeakWorkingSetSize : 8796
Priority : 8
PrivatePageCount : 4419584
ProcessId : 9360
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 35
QuotaPeakNonPagedPoolUsage : 8
QuotaPeakPagedPoolUsage : 37
ReadOperationCount : 2
ReadTransferCount : 80480
SessionId : 0
Status :
TerminationDate :
ThreadCount : 8
UserModeTime : 23437500
VirtualSize : 2203379634176
WindowsVersion : 10.0.19045
WorkingSetSize : 5124096
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : SgrmBroker.exe
Handles : 105
VM : 2203379634176
WS : 5124096
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="10500"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="10500"
Caption : Dell.TechHub.Diagnostics.SubAgent.exe
CommandLine : "C:\\Program Files\\Dell\\DTP\\DiagnosticsSubAgent\\
Dell.TechHub.Diagnostics.SubAgent.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120252.123982+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : Dell.TechHub.Diagnostics.SubAgent.exe
ExecutablePath : C:\Program Files\Dell\DTP\DiagnosticsSubAgent\
Dell.TechHub.Diagnostics.SubAgent.exe
ExecutionState :
Handle : 10500
HandleCount : 891
InstallDate :
KernelModeTime : 1742656250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : Dell.TechHub.Diagnostics.SubAgent.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 4181015
OtherTransferCount : 4111058
PageFaults : 4235826
PageFileUsage : 65792
ParentProcessId : 6268
PeakPageFileUsage : 103932
PeakVirtualSize : 2204285194240
PeakWorkingSetSize : 174760
Priority : 8
PrivatePageCount : 67371008
ProcessId : 10500
QuotaNonPagedPoolUsage : 113
QuotaPagedPoolUsage : 465
QuotaPeakNonPagedPoolUsage : 119
QuotaPeakPagedPoolUsage : 491
ReadOperationCount : 810
ReadTransferCount : 24365019
SessionId : 0
Status :
TerminationDate :
ThreadCount : 17
UserModeTime : 309218750
VirtualSize : 2204251627520
WindowsVersion : 10.0.19045
WorkingSetSize : 39960576
WriteOperationCount : 3493
WriteTransferCount : 253717
PSComputerName : XOANI-G1-LAPTOP
ProcessName : Dell.TechHub.Diagnostics.SubAgent.exe
Handles : 891
VM : 2204251627520
WS : 39960576
Path : C:\Program Files\Dell\DTP\DiagnosticsSubAgent\
Dell.TechHub.Diagnostics.SubAgent.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="10592"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="10592"
Caption : SupportAssistAgent.exe
CommandLine : "C:\Program Files\Dell\SupportAssistAgent\bin\
SupportAssistAgent.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120252.244219+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : SupportAssistAgent.exe
ExecutablePath : C:\Program Files\Dell\SupportAssistAgent\bin\
SupportAssistAgent.exe
ExecutionState :
Handle : 10592
HandleCount : 997
InstallDate :
KernelModeTime : 812812500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : SupportAssistAgent.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1090426
OtherTransferCount : 44938110
PageFaults : 1416649
PageFileUsage : 244052
ParentProcessId : 944
PeakPageFileUsage : 980716
PeakVirtualSize : 2205140750336
PeakWorkingSetSize : 991184
Priority : 8
PrivatePageCount : 249909248
ProcessId : 10592
QuotaNonPagedPoolUsage : 194
QuotaPagedPoolUsage : 505
QuotaPeakNonPagedPoolUsage : 207
QuotaPeakPagedPoolUsage : 536
ReadOperationCount : 79686
ReadTransferCount : 3162315882
SessionId : 0
Status :
TerminationDate :
ThreadCount : 32
UserModeTime : 672031250
VirtualSize : 2204624601088
WindowsVersion : 10.0.19045
WorkingSetSize : 67289088
WriteOperationCount : 47080
WriteTransferCount : 73149655
PSComputerName : XOANI-G1-LAPTOP
ProcessName : SupportAssistAgent.exe
Handles : 997
VM : 2204624601088
WS : 67289088
Path : C:\Program Files\Dell\SupportAssistAgent\bin\
SupportAssistAgent.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="10696"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="10696"
Caption : conhost.exe
CommandLine : \??\C:\Windows\system32\conhost.exe 0x4
CreationClassName : Win32_Process
CreationDate : 20230717120252.329431+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : conhost.exe
ExecutablePath : C:\Windows\system32\conhost.exe
ExecutionState :
Handle : 10696
HandleCount : 155
InstallDate :
KernelModeTime : 106875000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : conhost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 7516
OtherTransferCount : 368437
PageFaults : 4270
PageFileUsage : 6668
ParentProcessId : 10500
PeakPageFileUsage : 7216
PeakVirtualSize : 2203417534464
PeakWorkingSetSize : 13908
Priority : 8
PrivatePageCount : 6828032
ProcessId : 10696
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 111
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 113
ReadOperationCount : 1
ReadTransferCount : 5595
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 112656250
VirtualSize : 2203415617536
WindowsVersion : 10.0.19045
WorkingSetSize : 2334720
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : conhost.exe
Handles : 155
VM : 2203415617536
WS : 2334720
Path : C:\Windows\system32\conhost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="10980"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="10980"
Caption : Dell.TechHub.Analytics.SubAgent.exe
CommandLine : "C:\\Program Files\\Dell\\DTP\\AnalyticsSubAgent\\
Dell.TechHub.Analytics.SubAgent.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120252.437080+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : Dell.TechHub.Analytics.SubAgent.exe
ExecutablePath : C:\Program Files\Dell\DTP\AnalyticsSubAgent\
Dell.TechHub.Analytics.SubAgent.exe
ExecutionState :
Handle : 10980
HandleCount : 669
InstallDate :
KernelModeTime : 187968750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : Dell.TechHub.Analytics.SubAgent.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 168190
OtherTransferCount : 3775170
PageFaults : 134081
PageFileUsage : 54288
ParentProcessId : 6268
PeakPageFileUsage : 60892
PeakVirtualSize : 2204152221696
PeakWorkingSetSize : 122476
Priority : 8
PrivatePageCount : 55590912
ProcessId : 10980
QuotaNonPagedPoolUsage : 82
QuotaPagedPoolUsage : 322
QuotaPeakNonPagedPoolUsage : 87
QuotaPeakPagedPoolUsage : 328
ReadOperationCount : 32160
ReadTransferCount : 9315442
SessionId : 0
Status :
TerminationDate :
ThreadCount : 19
UserModeTime : 400937500
VirtualSize : 2204122796032
WindowsVersion : 10.0.19045
WorkingSetSize : 25628672
WriteOperationCount : 16924
WriteTransferCount : 7503647
PSComputerName : XOANI-G1-LAPTOP
ProcessName : Dell.TechHub.Analytics.SubAgent.exe
Handles : 669
VM : 2204122796032
WS : 25628672
Path : C:\Program Files\Dell\DTP\AnalyticsSubAgent\
Dell.TechHub.Analytics.SubAgent.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1240"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1240"
Caption : conhost.exe
CommandLine : \??\C:\Windows\system32\conhost.exe 0x4
CreationClassName : Win32_Process
CreationDate : 20230717120252.626310+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : conhost.exe
ExecutablePath : C:\Windows\system32\conhost.exe
ExecutionState :
Handle : 1240
HandleCount : 155
InstallDate :
KernelModeTime : 106093750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : conhost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 12797
OtherTransferCount : 635204
PageFaults : 3999
PageFileUsage : 6636
ParentProcessId : 10980
PeakPageFileUsage : 6724
PeakVirtualSize : 2203417190400
PeakWorkingSetSize : 13900
Priority : 8
PrivatePageCount : 6795264
ProcessId : 1240
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 111
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 114
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 93125000
VirtualSize : 2203415617536
WindowsVersion : 10.0.19045
WorkingSetSize : 1597440
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : conhost.exe
Handles : 155
VM : 2203415617536
WS : 1597440
Path : C:\Windows\system32\conhost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3428"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3428"
Caption : Dell.DCF.UA.Bradbury.API.SubAgent.exe
CommandLine : "C:\Program Files (x86)\Dell\UpdateService\DCF\
Dell.DCF.UA.Bradbury.API.SubAgent.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120252.730003+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : Dell.DCF.UA.Bradbury.API.SubAgent.exe
ExecutablePath : C:\Program Files (x86)\Dell\UpdateService\DCF\
Dell.DCF.UA.Bradbury.API.SubAgent.exe
ExecutionState :
Handle : 3428
HandleCount : 629
InstallDate :
KernelModeTime : 2273593750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : Dell.DCF.UA.Bradbury.API.SubAgent.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 51493
OtherTransferCount : 3069234
PageFaults : 5035243
PageFileUsage : 49640
ParentProcessId : 6268
PeakPageFileUsage : 54296
PeakVirtualSize : 5009559552
PeakWorkingSetSize : 181656
Priority : 8
PrivatePageCount : 50831360
ProcessId : 3428
QuotaNonPagedPoolUsage : 48
QuotaPagedPoolUsage : 459
QuotaPeakNonPagedPoolUsage : 53
QuotaPeakPagedPoolUsage : 466
ReadOperationCount : 290
ReadTransferCount : 1283165
SessionId : 0
Status :
TerminationDate :
ThreadCount : 18
UserModeTime : 2390468750
VirtualSize : 5001170944
WindowsVersion : 10.0.19045
WorkingSetSize : 22978560
WriteOperationCount : 112
WriteTransferCount : 26068
PSComputerName : XOANI-G1-LAPTOP
ProcessName : Dell.DCF.UA.Bradbury.API.SubAgent.exe
Handles : 629
VM : 5001170944
WS : 22978560
Path : C:\Program Files (x86)\Dell\UpdateService\DCF\
Dell.DCF.UA.Bradbury.API.SubAgent.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="7424"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="7424"
Caption : conhost.exe
CommandLine : \??\C:\Windows\system32\conhost.exe 0x4
CreationClassName : Win32_Process
CreationDate : 20230717120252.915609+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : conhost.exe
ExecutablePath : C:\Windows\system32\conhost.exe
ExecutionState :
Handle : 7424
HandleCount : 157
InstallDate :
KernelModeTime : 99218750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : conhost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 5749
OtherTransferCount : 282804
PageFaults : 4112
PageFileUsage : 6684
ParentProcessId : 3428
PeakPageFileUsage : 6740
PeakVirtualSize : 2203417190400
PeakWorkingSetSize : 13896
Priority : 8
PrivatePageCount : 6844416
ProcessId : 7424
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 112
QuotaPeakNonPagedPoolUsage : 12
QuotaPeakPagedPoolUsage : 113
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 78593750
VirtualSize : 2203416141824
WindowsVersion : 10.0.19045
WorkingSetSize : 2125824
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : conhost.exe
Handles : 157
VM : 2203416141824
WS : 2125824
Path : C:\Windows\system32\conhost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="8024"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="8024"
Caption : Dell.TechHub.DataManager.SubAgent.exe
CommandLine : "C:\\Program Files\\Dell\\DTP\\DataManagerSubAgent\\
Dell.TechHub.DataManager.SubAgent.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120253.063308+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : Dell.TechHub.DataManager.SubAgent.exe
ExecutablePath : C:\Program Files\Dell\DTP\DataManagerSubAgent\
Dell.TechHub.DataManager.SubAgent.exe
ExecutionState :
Handle : 8024
HandleCount : 805
InstallDate :
KernelModeTime : 48188437500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : Dell.TechHub.DataManager.SubAgent.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 3093871
OtherTransferCount : 3537090
PageFaults : 1168583
PageFileUsage : 80596
ParentProcessId : 6268
PeakPageFileUsage : 92272
PeakVirtualSize : 2204172652544
PeakWorkingSetSize : 149380
Priority : 8
PrivatePageCount : 82530304
ProcessId : 8024
QuotaNonPagedPoolUsage : 78
QuotaPagedPoolUsage : 322
QuotaPeakNonPagedPoolUsage : 82
QuotaPeakPagedPoolUsage : 329
ReadOperationCount : 956796818
ReadTransferCount : 3918574125751
SessionId : 0
Status :
TerminationDate :
ThreadCount : 15
UserModeTime : 15364062500
VirtualSize : 2204145913856
WindowsVersion : 10.0.19045
WorkingSetSize : 64032768
WriteOperationCount : 268749
WriteTransferCount : 488558340
PSComputerName : XOANI-G1-LAPTOP
ProcessName : Dell.TechHub.DataManager.SubAgent.exe
Handles : 805
VM : 2204145913856
WS : 64032768
Path : C:\Program Files\Dell\DTP\DataManagerSubAgent\
Dell.TechHub.DataManager.SubAgent.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="8260"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="8260"
Caption : conhost.exe
CommandLine : \??\C:\Windows\system32\conhost.exe 0x4
CreationClassName : Win32_Process
CreationDate : 20230717120253.262731+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : conhost.exe
ExecutablePath : C:\Windows\system32\conhost.exe
ExecutionState :
Handle : 8260
HandleCount : 155
InstallDate :
KernelModeTime : 126250000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : conhost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 21649
OtherTransferCount : 1077804
PageFaults : 3973
PageFileUsage : 6644
ParentProcessId : 8024
PeakPageFileUsage : 6728
PeakVirtualSize : 2203417190400
PeakWorkingSetSize : 13884
Priority : 8
PrivatePageCount : 6803456
ProcessId : 8260
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 111
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 114
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 110000000
VirtualSize : 2203415617536
WindowsVersion : 10.0.19045
WorkingSetSize : 1597440
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : conhost.exe
Handles : 155
VM : 2203415617536
WS : 1597440
Path : C:\Windows\system32\conhost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="9516"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="9516"
Caption : Dell.TechHub.Instrumentation.SubAgent.exe
CommandLine : "C:\\Program Files\\Dell\\DTP\\
InstrumentationSubAgent\\Dell.TechHub.Instrumentation.SubAg
ent.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120253.351908+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : Dell.TechHub.Instrumentation.SubAgent.exe
ExecutablePath : C:\Program Files\Dell\DTP\InstrumentationSubAgent\
Dell.TechHub.Instrumentation.SubAgent.ex
e
ExecutionState :
Handle : 9516
HandleCount : 1439
InstallDate :
KernelModeTime : 5888593750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : Dell.TechHub.Instrumentation.SubAgent.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 4727814
OtherTransferCount : 142185905
PageFaults : 945348
PageFileUsage : 103872
ParentProcessId : 6268
PeakPageFileUsage : 113688
PeakVirtualSize : 2204354080768
PeakWorkingSetSize : 185992
Priority : 8
PrivatePageCount : 106364928
ProcessId : 9516
QuotaNonPagedPoolUsage : 122
QuotaPagedPoolUsage : 432
QuotaPeakNonPagedPoolUsage : 130
QuotaPeakPagedPoolUsage : 460
ReadOperationCount : 236635
ReadTransferCount : 64269410
SessionId : 0
Status :
TerminationDate :
ThreadCount : 57
UserModeTime : 5457343750
VirtualSize : 2204262285312
WindowsVersion : 10.0.19045
WorkingSetSize : 85684224
WriteOperationCount : 186411
WriteTransferCount : 139048695
PSComputerName : XOANI-G1-LAPTOP
ProcessName : Dell.TechHub.Instrumentation.SubAgent.exe
Handles : 1439
VM : 2204262285312
WS : 85684224
Path : C:\Program Files\Dell\DTP\InstrumentationSubAgent\
Dell.TechHub.Instrumentation.SubAgent.ex
e
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5108"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5108"
Caption : conhost.exe
CommandLine : \??\C:\Windows\system32\conhost.exe 0x4
CreationClassName : Win32_Process
CreationDate : 20230717120253.565763+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : conhost.exe
ExecutablePath : C:\Windows\system32\conhost.exe
ExecutionState :
Handle : 5108
HandleCount : 156
InstallDate :
KernelModeTime : 109218750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : conhost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 138281
OtherTransferCount : 6911236
PageFaults : 4142
PageFileUsage : 6644
ParentProcessId : 9516
PeakPageFileUsage : 6732
PeakVirtualSize : 2203417190400
PeakWorkingSetSize : 13892
Priority : 8
PrivatePageCount : 6803456
ProcessId : 5108
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 111
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 113
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 99687500
VirtualSize : 2203415617536
WindowsVersion : 10.0.19045
WorkingSetSize : 2256896
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : conhost.exe
Handles : 156
VM : 2203415617536
WS : 2256896
Path : C:\Windows\system32\conhost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="7888"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="7888"
Caption : DDVDataCollector.exe
CommandLine : "C:\Program Files\Dell\DellDataVault\
DDVDataCollector.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120258.346798+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : DDVDataCollector.exe
ExecutablePath : C:\Program Files\Dell\DellDataVault\
DDVDataCollector.exe
ExecutionState :
Handle : 7888
HandleCount : 693
InstallDate :
KernelModeTime : 1790625000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : DDVDataCollector.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 121177
OtherTransferCount : 3421440
PageFaults : 236365
PageFileUsage : 65208
ParentProcessId : 944
PeakPageFileUsage : 69372
PeakVirtualSize : 2204211802112
PeakWorkingSetSize : 155428
Priority : 8
PrivatePageCount : 66772992
ProcessId : 7888
QuotaNonPagedPoolUsage : 82
QuotaPagedPoolUsage : 383
QuotaPeakNonPagedPoolUsage : 84
QuotaPeakPagedPoolUsage : 394
ReadOperationCount : 31433573
ReadTransferCount : 128455164832
SessionId : 0
Status :
TerminationDate :
ThreadCount : 20
UserModeTime : 848281250
VirtualSize : 2204181991424
WindowsVersion : 10.0.19045
WorkingSetSize : 20025344
WriteOperationCount : 156525
WriteTransferCount : 257241755
PSComputerName : XOANI-G1-LAPTOP
ProcessName : DDVDataCollector.exe
Handles : 693
VM : 2204181991424
WS : 20025344
Path : C:\Program Files\Dell\DellDataVault\
DDVDataCollector.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3168"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3168"
Caption : Dell.TechHub.Instrumentation.UserProcess.exe
CommandLine : "C:\Program Files\Dell\DTP\InstrumentationSubAgent\
Dell.TechHub.Instrumentation.UserProces
s.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120301.005222+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : Dell.TechHub.Instrumentation.UserProcess.exe
ExecutablePath : C:\Program Files\Dell\DTP\InstrumentationSubAgent\
Dell.TechHub.Instrumentation.UserProcess
.exe
ExecutionState :
Handle : 3168
HandleCount : 590
InstallDate :
KernelModeTime : 574531250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : Dell.TechHub.Instrumentation.UserProcess.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 141750
OtherTransferCount : 3520622
PageFaults : 277229
PageFileUsage : 40304
ParentProcessId : 9516
PeakPageFileUsage : 45704
PeakVirtualSize : 2204213448704
PeakWorkingSetSize : 81356
Priority : 8
PrivatePageCount : 41271296
ProcessId : 3168
QuotaNonPagedPoolUsage : 70
QuotaPagedPoolUsage : 352
QuotaPeakNonPagedPoolUsage : 74
QuotaPeakPagedPoolUsage : 472
ReadOperationCount : 44440
ReadTransferCount : 4277462
SessionId : 1
Status :
TerminationDate :
ThreadCount : 25
UserModeTime : 604687500
VirtualSize : 2204141174784
WindowsVersion : 10.0.19045
WorkingSetSize : 33820672
WriteOperationCount : 22279
WriteTransferCount : 5065160
PSComputerName : XOANI-G1-LAPTOP
ProcessName : Dell.TechHub.Instrumentation.UserProcess.exe
Handles : 590
VM : 2204141174784
WS : 33820672
Path : C:\Program Files\Dell\DTP\InstrumentationSubAgent\
Dell.TechHub.Instrumentation.UserProcess
.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="6600"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="6600"
Caption : DDVCollectorSvcApi.exe
CommandLine : "C:\Program Files\Dell\DellDataVault\
DDVCollectorSvcApi.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120310.760335+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : DDVCollectorSvcApi.exe
ExecutablePath : C:\Program Files\Dell\DellDataVault\
DDVCollectorSvcApi.exe
ExecutionState :
Handle : 6600
HandleCount : 167
InstallDate :
KernelModeTime : 1093750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : DDVCollectorSvcApi.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1628
OtherTransferCount : 57954
PageFaults : 9147
PageFileUsage : 1856
ParentProcessId : 944
PeakPageFileUsage : 2008
PeakVirtualSize : 4392710144
PeakWorkingSetSize : 31472
Priority : 8
PrivatePageCount : 1900544
ProcessId : 6600
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 111
QuotaPeakNonPagedPoolUsage : 10
QuotaPeakPagedPoolUsage : 111
ReadOperationCount : 17
ReadTransferCount : 51
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 156250
VirtualSize : 4387467264
WindowsVersion : 10.0.19045
WorkingSetSize : 2830336
WriteOperationCount : 17
WriteTransferCount : 1462
PSComputerName : XOANI-G1-LAPTOP
ProcessName : DDVCollectorSvcApi.exe
Handles : 167
VM : 4387467264
WS : 2830336
Path : C:\Program Files\Dell\DellDataVault\
DDVCollectorSvcApi.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3584"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3584"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalServiceAndNoImpersonation -p -s QWAVE
CreationClassName : Win32_Process
CreationDate : 20230717120533.065459+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 3584
HandleCount : 182
InstallDate :
KernelModeTime : 2031250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2679
OtherTransferCount : 5280193
PageFaults : 4192
PageFileUsage : 3968
ParentProcessId : 944
PeakPageFileUsage : 5100
PeakVirtualSize : 2203407826944
PeakWorkingSetSize : 10516
Priority : 8
PrivatePageCount : 4063232
ProcessId : 3584
QuotaNonPagedPoolUsage : 126
QuotaPagedPoolUsage : 72
QuotaPeakNonPagedPoolUsage : 129
QuotaPeakPagedPoolUsage : 72
ReadOperationCount : 1
ReadTransferCount : 325
SessionId : 0
Status :
TerminationDate :
ThreadCount : 6
UserModeTime : 312500
VirtualSize : 2203406249984
WindowsVersion : 10.0.19045
WorkingSetSize : 3088384
WriteOperationCount : 172
WriteTransferCount : 55900
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 182
VM : 2203406249984
WS : 3088384
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="11080"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="11080"
Caption : Plantecho.Client.exe
CommandLine : "C:\Program Files (x86)\Alpiconn\Plantecho\Client\
Plantecho.Client.exe"
CreationClassName : Win32_Process
CreationDate : 20230717120537.187509+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : Plantecho.Client.exe
ExecutablePath : C:\Program Files (x86)\Alpiconn\Plantecho\Client\
Plantecho.Client.exe
ExecutionState :
Handle : 11080
HandleCount : 1181
InstallDate :
KernelModeTime : 5717968750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : Plantecho.Client.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 208234
OtherTransferCount : 18201274
PageFaults : 3752061
PageFileUsage : 185336
ParentProcessId : 5412
PeakPageFileUsage : 222432
PeakVirtualSize : 944173056
PeakWorkingSetSize : 542532
Priority : 8
PrivatePageCount : 189784064
ProcessId : 11080
QuotaNonPagedPoolUsage : 136
QuotaPagedPoolUsage : 1208
QuotaPeakNonPagedPoolUsage : 143
QuotaPeakPagedPoolUsage : 1217
ReadOperationCount : 360
ReadTransferCount : 1267680
SessionId : 1
Status :
TerminationDate :
ThreadCount : 16
UserModeTime : 4155468750
VirtualSize : 895156224
WindowsVersion : 10.0.19045
WorkingSetSize : 111931392
WriteOperationCount : 29
WriteTransferCount : 1020
PSComputerName : XOANI-G1-LAPTOP
ProcessName : Plantecho.Client.exe
Handles : 1181
VM : 895156224
WS : 111931392
Path : C:\Program Files (x86)\Alpiconn\Plantecho\Client\
Plantecho.Client.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="11868"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="11868"
Caption : Microsoft.Photos.exe
CommandLine : "C:\Program Files\WindowsApps\
Microsoft.Windows.Photos_2023.10030.27002.0_x64__8wekyb3d8bb
we\Microsoft.Photos.exe" -
ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
CreationClassName : Win32_Process
CreationDate : 20230717123031.218682+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : Microsoft.Photos.exe
ExecutablePath : C:\Program Files\WindowsApps\
Microsoft.Windows.Photos_2023.10030.27002.0_x64__8wekyb3d8bbw
e\Microsoft.Photos.exe
ExecutionState :
Handle : 11868
HandleCount : 705
InstallDate :
KernelModeTime : 39062500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : Microsoft.Photos.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2975
OtherTransferCount : 25310
PageFaults : 216711
PageFileUsage : 45580
ParentProcessId : 1176
PeakPageFileUsage : 46920
PeakVirtualSize : 5319979008
PeakWorkingSetSize : 96184
Priority : 8
PrivatePageCount : 46673920
ProcessId : 11868
QuotaNonPagedPoolUsage : 44
QuotaPagedPoolUsage : 876
QuotaPeakNonPagedPoolUsage : 45
QuotaPeakPagedPoolUsage : 878
ReadOperationCount : 7769
ReadTransferCount : 31394700
SessionId : 1
Status :
TerminationDate :
ThreadCount : 15
UserModeTime : 24531250
VirtualSize : 5315784704
WindowsVersion : 10.0.19045
WorkingSetSize : 1613824
WriteOperationCount : 2025
WriteTransferCount : 5935056
PSComputerName : XOANI-G1-LAPTOP
ProcessName : Microsoft.Photos.exe
Handles : 705
VM : 5315784704
WS : 1613824
Path : C:\Program Files\WindowsApps\
Microsoft.Windows.Photos_2023.10030.27002.0_x64__8wekyb3d8bbw
e\Microsoft.Photos.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="9944"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="9944"
Caption : RuntimeBroker.exe
CommandLine : C:\Windows\System32\RuntimeBroker.exe -Embedding
CreationClassName : Win32_Process
CreationDate : 20230717123032.430735+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : RuntimeBroker.exe
ExecutablePath : C:\Windows\System32\RuntimeBroker.exe
ExecutionState :
Handle : 9944
HandleCount : 315
InstallDate :
KernelModeTime : 42812500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : RuntimeBroker.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 24274
OtherTransferCount : 250182
PageFaults : 104936
PageFileUsage : 6004
ParentProcessId : 1176
PeakPageFileUsage : 7064
PeakVirtualSize : 2203508400128
PeakWorkingSetSize : 28680
Priority : 8
PrivatePageCount : 6148096
ProcessId : 9944
QuotaNonPagedPoolUsage : 20
QuotaPagedPoolUsage : 238
QuotaPeakNonPagedPoolUsage : 25
QuotaPeakPagedPoolUsage : 280
ReadOperationCount : 139
ReadTransferCount : 120848
SessionId : 1
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 27968750
VirtualSize : 2203486961664
WindowsVersion : 10.0.19045
WorkingSetSize : 14807040
WriteOperationCount : 1
WriteTransferCount : 160
PSComputerName : XOANI-G1-LAPTOP
ProcessName : RuntimeBroker.exe
Handles : 315
VM : 2203486961664
WS : 14807040
Path : C:\Windows\System32\RuntimeBroker.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="10624"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="10624"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k netsvcs -p
CreationClassName : Win32_Process
CreationDate : 20230718033658.231925+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 10624
HandleCount : 215
InstallDate :
KernelModeTime : 9843750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1767
OtherTransferCount : 36190
PageFaults : 36524
PageFileUsage : 6084
ParentProcessId : 944
PeakPageFileUsage : 7068
PeakVirtualSize : 2203460612096
PeakWorkingSetSize : 24888
Priority : 8
PrivatePageCount : 6230016
ProcessId : 10624
QuotaNonPagedPoolUsage : 16
QuotaPagedPoolUsage : 143
QuotaPeakNonPagedPoolUsage : 21
QuotaPeakPagedPoolUsage : 171
ReadOperationCount : 139
ReadTransferCount : 272669
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 11875000
VirtualSize : 2203438354432
WindowsVersion : 10.0.19045
WorkingSetSize : 12824576
WriteOperationCount : 157
WriteTransferCount : 252777
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 215
VM : 2203438354432
WS : 12824576
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4736"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4736"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k netsvcs -p -s BITS
CreationClassName : Win32_Process
CreationDate : 20230718105224.459686+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 4736
HandleCount : 578
InstallDate :
KernelModeTime : 59843750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 153623
OtherTransferCount : 10876499
PageFaults : 84250
PageFileUsage : 13016
ParentProcessId : 944
PeakPageFileUsage : 18268
PeakVirtualSize : 2203574792192
PeakWorkingSetSize : 26092
Priority : 8
PrivatePageCount : 13328384
ProcessId : 4736
QuotaNonPagedPoolUsage : 36
QuotaPagedPoolUsage : 182
QuotaPeakNonPagedPoolUsage : 128
QuotaPeakPagedPoolUsage : 184
ReadOperationCount : 85
ReadTransferCount : 2786918
SessionId : 0
Status :
TerminationDate :
ThreadCount : 15
UserModeTime : 56875000
VirtualSize : 2203568447488
WindowsVersion : 10.0.19045
WorkingSetSize : 14192640
WriteOperationCount : 347
WriteTransferCount : 33791590
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 578
VM : 2203568447488
WS : 14192640
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="8040"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="8040"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k
LocalSystemNetworkRestricted -p -s DsSvc
CreationClassName : Win32_Process
CreationDate : 20230718120030.465008+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 8040
HandleCount : 193
InstallDate :
KernelModeTime : 4062500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 992
OtherTransferCount : 92500
PageFaults : 32257
PageFileUsage : 7840
ParentProcessId : 944
PeakPageFileUsage : 9088
PeakVirtualSize : 2203563212800
PeakWorkingSetSize : 13316
Priority : 8
PrivatePageCount : 8028160
ProcessId : 8040
QuotaNonPagedPoolUsage : 19
QuotaPagedPoolUsage : 97
QuotaPeakNonPagedPoolUsage : 20
QuotaPeakPagedPoolUsage : 100
ReadOperationCount : 38
ReadTransferCount : 729088
SessionId : 0
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 6718750
VirtualSize : 2203560054784
WindowsVersion : 10.0.19045
WorkingSetSize : 4288512
WriteOperationCount : 27
WriteTransferCount : 139264
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 193
VM : 2203560054784
WS : 4288512
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="6132"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="6132"
Caption : TvUpdateInfo.exe
CommandLine : "C:\Windows\TEMP\nshF819.tmp\TvUpdateInfo.exe"
CreationClassName : Win32_Process
CreationDate : 20230719005209.968170+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : TvUpdateInfo.exe
ExecutablePath : C:\Windows\TEMP\nshF819.tmp\TvUpdateInfo.exe
ExecutionState :
Handle : 6132
HandleCount : 152
InstallDate :
KernelModeTime : 468750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : TvUpdateInfo.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 308
OtherTransferCount : 12110
PageFaults : 8326
PageFileUsage : 2732
ParentProcessId : 4992
PeakPageFileUsage : 2816
PeakVirtualSize : 78512128
PeakWorkingSetSize : 24168
Priority : 8
PrivatePageCount : 2797568
ProcessId : 6132
QuotaNonPagedPoolUsage : 13
QuotaPagedPoolUsage : 121
QuotaPeakNonPagedPoolUsage : 13
QuotaPeakPagedPoolUsage : 134
ReadOperationCount : 14
ReadTransferCount : 346
SessionId : 1
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 468750
VirtualSize : 73261056
WindowsVersion : 10.0.19045
WorkingSetSize : 5046272
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : TvUpdateInfo.exe
Handles : 152
VM : 73261056
WS : 5046272
Path : C:\Windows\TEMP\nshF819.tmp\TvUpdateInfo.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="8540"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="8540"
Caption : TeamViewer_Service.exe
CommandLine : "C:\Program Files (x86)\TeamViewer\
TeamViewer_Service.exe"
CreationClassName : Win32_Process
CreationDate : 20230719005226.357761+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : TeamViewer_Service.exe
ExecutablePath : C:\Program Files (x86)\TeamViewer\
TeamViewer_Service.exe
ExecutionState :
Handle : 8540
HandleCount : 571
InstallDate :
KernelModeTime : 581562500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : TeamViewer_Service.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 85621
OtherTransferCount : 9534652
PageFaults : 99424
PageFileUsage : 91928
ParentProcessId : 944
PeakPageFileUsage : 92908
PeakVirtualSize : 257429504
PeakWorkingSetSize : 71364
Priority : 8
PrivatePageCount : 94134272
ProcessId : 8540
QuotaNonPagedPoolUsage : 40
QuotaPagedPoolUsage : 202
QuotaPeakNonPagedPoolUsage : 104
QuotaPeakPagedPoolUsage : 317
ReadOperationCount : 234
ReadTransferCount : 84742207
SessionId : 0
Status :
TerminationDate :
ThreadCount : 21
UserModeTime : 709375000
VirtualSize : 245665792
WindowsVersion : 10.0.19045
WorkingSetSize : 41086976
WriteOperationCount : 19924
WriteTransferCount : 1539840
PSComputerName : XOANI-G1-LAPTOP
ProcessName : TeamViewer_Service.exe
Handles : 571
VM : 245665792
WS : 41086976
Path : C:\Program Files (x86)\TeamViewer\
TeamViewer_Service.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1248"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1248"
Caption : TeamViewer.exe
CommandLine : "C:\Program Files (x86)\TeamViewer\TeamViewer.exe"
CreationClassName : Win32_Process
CreationDate : 20230719005227.575946+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : TeamViewer.exe
ExecutablePath : C:\Program Files (x86)\TeamViewer\TeamViewer.exe
ExecutionState :
Handle : 1248
HandleCount : 680
InstallDate :
KernelModeTime : 38906250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : TeamViewer.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 28146
OtherTransferCount : 2349797
PageFaults : 105324
PageFileUsage : 52452
ParentProcessId : 8540
PeakPageFileUsage : 57092
PeakVirtualSize : 438022144
PeakWorkingSetSize : 163860
Priority : 8
PrivatePageCount : 53710848
ProcessId : 1248
QuotaNonPagedPoolUsage : 55
QuotaPagedPoolUsage : 535
QuotaPeakNonPagedPoolUsage : 56
QuotaPeakPagedPoolUsage : 613
ReadOperationCount : 108
ReadTransferCount : 29890838
SessionId : 1
Status :
TerminationDate :
ThreadCount : 31
UserModeTime : 49375000
VirtualSize : 428412928
WindowsVersion : 10.0.19045
WorkingSetSize : 44773376
WriteOperationCount : 771
WriteTransferCount : 219708
PSComputerName : XOANI-G1-LAPTOP
ProcessName : TeamViewer.exe
Handles : 680
VM : 428412928
WS : 44773376
Path : C:\Program Files (x86)\TeamViewer\TeamViewer.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="9340"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="9340"
Caption : tv_w32.exe
CommandLine : "C:\Program Files (x86)\TeamViewer\tv_w32.exe" --
action hooks --log C:\Program Files (x86
)\TeamViewer\TeamViewer15_Logfile.log
CreationClassName : Win32_Process
CreationDate : 20230719005229.549129+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : tv_w32.exe
ExecutablePath : C:\Program Files (x86)\TeamViewer\tv_w32.exe
ExecutionState :
Handle : 9340
HandleCount : 214
InstallDate :
KernelModeTime : 81562500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : tv_w32.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 252
OtherTransferCount : 10422
PageFaults : 10557
PageFileUsage : 3848
ParentProcessId : 8540
PeakPageFileUsage : 4008
PeakVirtualSize : 120414208
PeakWorkingSetSize : 32512
Priority : 8
PrivatePageCount : 3940352
ProcessId : 9340
QuotaNonPagedPoolUsage : 17
QuotaPagedPoolUsage : 152
QuotaPeakNonPagedPoolUsage : 17
QuotaPeakPagedPoolUsage : 159
ReadOperationCount : 1
ReadTransferCount : 472376
SessionId : 1
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 54687500
VirtualSize : 119095296
WindowsVersion : 10.0.19045
WorkingSetSize : 3153920
WriteOperationCount : 5
WriteTransferCount : 847
PSComputerName : XOANI-G1-LAPTOP
ProcessName : tv_w32.exe
Handles : 214
VM : 119095296
WS : 3153920
Path : C:\Program Files (x86)\TeamViewer\tv_w32.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="3096"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="3096"
Caption : tv_x64.exe
CommandLine : "C:\Program Files (x86)\TeamViewer\tv_x64.exe" --
action hooks --log C:\Program Files (x86
)\TeamViewer\TeamViewer15_Logfile.log
CreationClassName : Win32_Process
CreationDate : 20230719005229.821240+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : tv_x64.exe
ExecutablePath : C:\Program Files (x86)\TeamViewer\tv_x64.exe
ExecutionState :
Handle : 3096
HandleCount : 198
InstallDate :
KernelModeTime : 77343750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : tv_x64.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 262
OtherTransferCount : 10446
PageFaults : 10953
PageFileUsage : 4456
ParentProcessId : 8540
PeakPageFileUsage : 4756
PeakVirtualSize : 2203445387264
PeakWorkingSetSize : 34280
Priority : 8
PrivatePageCount : 4562944
ProcessId : 3096
QuotaNonPagedPoolUsage : 15
QuotaPagedPoolUsage : 161
QuotaPeakNonPagedPoolUsage : 15
QuotaPeakPagedPoolUsage : 168
ReadOperationCount : 1
ReadTransferCount : 524288
SessionId : 1
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 45625000
VirtualSize : 2203444330496
WindowsVersion : 10.0.19045
WorkingSetSize : 3227648
WriteOperationCount : 2
WriteTransferCount : 251
PSComputerName : XOANI-G1-LAPTOP
ProcessName : tv_x64.exe
Handles : 198
VM : 2203444330496
WS : 3227648
Path : C:\Program Files (x86)\TeamViewer\tv_x64.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="292"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="292"
Caption : TelemetryUtility.exe
CommandLine : "C:\Program Files\Dell\SARemediation\audit\
TelemetryUtility.exe" SADUPlugin 5.5.5.16206 5
CreationClassName : Win32_Process
CreationDate : 20230720120244.562252+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : TelemetryUtility.exe
ExecutablePath : C:\Program Files\Dell\SARemediation\audit\
TelemetryUtility.exe
ExecutionState :
Handle : 292
HandleCount : 498
InstallDate :
KernelModeTime : 87031250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : TelemetryUtility.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 29970
OtherTransferCount : 2447914
PageFaults : 47734
PageFileUsage : 20744
ParentProcessId : 10540
PeakPageFileUsage : 21152
PeakVirtualSize : 214904832
PeakWorkingSetSize : 43404
Priority : 8
PrivatePageCount : 21241856
ProcessId : 292
QuotaNonPagedPoolUsage : 35
QuotaPagedPoolUsage : 305
QuotaPeakNonPagedPoolUsage : 38
QuotaPeakPagedPoolUsage : 321
ReadOperationCount : 190
ReadTransferCount : 527303
SessionId : 0
Status :
TerminationDate :
ThreadCount : 11
UserModeTime : 122031250
VirtualSize : 200753152
WindowsVersion : 10.0.19045
WorkingSetSize : 10883072
WriteOperationCount : 76
WriteTransferCount : 11678
PSComputerName : XOANI-G1-LAPTOP
ProcessName : TelemetryUtility.exe
Handles : 498
VM : 200753152
WS : 10883072
Path : C:\Program Files\Dell\SARemediation\audit\
TelemetryUtility.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="9868"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="9868"
Caption : ShellExperienceHost.exe
CommandLine : "C:\Windows\SystemApps\
ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerN
ame:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
CreationClassName : Win32_Process
CreationDate : 20230720203315.495553+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : ShellExperienceHost.exe
ExecutablePath : C:\Windows\SystemApps\
ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
ExecutionState :
Handle : 9868
HandleCount : 809
InstallDate :
KernelModeTime : 14843750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : ShellExperienceHost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1233
OtherTransferCount : 22520
PageFaults : 62097
PageFileUsage : 30564
ParentProcessId : 1176
PeakPageFileUsage : 32044
PeakVirtualSize : 2203803496448
PeakWorkingSetSize : 69540
Priority : 8
PrivatePageCount : 31297536
ProcessId : 9868
QuotaNonPagedPoolUsage : 34
QuotaPagedPoolUsage : 933
QuotaPeakNonPagedPoolUsage : 37
QuotaPeakPagedPoolUsage : 984
ReadOperationCount : 18
ReadTransferCount : 98252
SessionId : 1
Status :
TerminationDate :
ThreadCount : 25
UserModeTime : 26250000
VirtualSize : 2203790848000
WindowsVersion : 10.0.19045
WorkingSetSize : 66531328
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : ShellExperienceHost.exe
Handles : 809
VM : 2203790848000
WS : 66531328
Path : C:\Windows\SystemApps\
ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="7152"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="7152"
Caption : RuntimeBroker.exe
CommandLine : C:\Windows\System32\RuntimeBroker.exe -Embedding
CreationClassName : Win32_Process
CreationDate : 20230720203315.935467+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : RuntimeBroker.exe
ExecutablePath : C:\Windows\System32\RuntimeBroker.exe
ExecutionState :
Handle : 7152
HandleCount : 437
InstallDate :
KernelModeTime : 5000000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : RuntimeBroker.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1428
OtherTransferCount : 32040
PageFaults : 21678
PageFileUsage : 7296
ParentProcessId : 1176
PeakPageFileUsage : 8956
PeakVirtualSize : 2203509985280
PeakWorkingSetSize : 27964
Priority : 8
PrivatePageCount : 7471104
ProcessId : 7152
QuotaNonPagedPoolUsage : 24
QuotaPagedPoolUsage : 241
QuotaPeakNonPagedPoolUsage : 28
QuotaPeakPagedPoolUsage : 271
ReadOperationCount : 3
ReadTransferCount : 522
SessionId : 1
Status :
TerminationDate :
ThreadCount : 16
UserModeTime : 4687500
VirtualSize : 2203494445056
WindowsVersion : 10.0.19045
WorkingSetSize : 25550848
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : RuntimeBroker.exe
Handles : 437
VM : 2203494445056
WS : 25550848
Path : C:\Windows\System32\RuntimeBroker.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4316"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4316"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k
LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
CreationClassName : Win32_Process
CreationDate : 20230720220058.279498+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 4316
HandleCount : 183
InstallDate :
KernelModeTime : 54218750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 198683
OtherTransferCount : 7664245
PageFaults : 124726
PageFileUsage : 4028
ParentProcessId : 944
PeakPageFileUsage : 4992
PeakVirtualSize : 2203408695296
PeakWorkingSetSize : 11264
Priority : 8
PrivatePageCount : 4124672
ProcessId : 4316
QuotaNonPagedPoolUsage : 14
QuotaPagedPoolUsage : 80
QuotaPeakNonPagedPoolUsage : 19
QuotaPeakPagedPoolUsage : 80
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 49687500
VirtualSize : 2203406618624
WindowsVersion : 10.0.19045
WorkingSetSize : 4923392
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 183
VM : 2203406618624
WS : 4923392
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5976"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5976"
Caption : svchost.exe
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230721221035.026356+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath :
ExecutionState :
Handle : 5976
HandleCount : 433
InstallDate :
KernelModeTime : 414531250
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 978023
OtherTransferCount : 69190788
PageFaults : 76788
PageFileUsage : 5804
ParentProcessId : 944
PeakPageFileUsage : 12332
PeakVirtualSize : 2203450957824
PeakWorkingSetSize : 25028
Priority : 8
PrivatePageCount : 5943296
ProcessId : 5976
QuotaNonPagedPoolUsage : 22
QuotaPagedPoolUsage : 137
QuotaPeakNonPagedPoolUsage : 1048
QuotaPeakPagedPoolUsage : 146
ReadOperationCount : 11
ReadTransferCount : 7969520
SessionId : 0
Status :
TerminationDate :
ThreadCount : 14
UserModeTime : 169375000
VirtualSize : 2203445694464
WindowsVersion : 10.0.19045
WorkingSetSize : 12304384
WriteOperationCount : 183
WriteTransferCount : 172888842
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 433
VM : 2203445694464
WS : 12304384
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="6456"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="6456"
Caption : FoxitPDFReaderUpdateService.exe
CommandLine : "C:\Program Files (x86)\Common Files\Foxit\Foxit PDF
Reader\FoxitPDFReaderUpdateService.ex
e"
CreationClassName : Win32_Process
CreationDate : 20230722073503.335865+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : FoxitPDFReaderUpdateService.exe
ExecutablePath : C:\Program Files (x86)\Common Files\Foxit\Foxit PDF
Reader\FoxitPDFReaderUpdateService.exe
ExecutionState :
Handle : 6456
HandleCount : 159
InstallDate :
KernelModeTime : 658281250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : FoxitPDFReaderUpdateService.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 6403076
OtherTransferCount : 9150
PageFaults : 3380
PageFileUsage : 2992
ParentProcessId : 944
PeakPageFileUsage : 3052
PeakVirtualSize : 65077248
PeakWorkingSetSize : 10384
Priority : 8
PrivatePageCount : 3063808
ProcessId : 6456
QuotaNonPagedPoolUsage : 14
QuotaPagedPoolUsage : 102
QuotaPeakNonPagedPoolUsage : 15
QuotaPeakPagedPoolUsage : 102
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 395312500
VirtualSize : 63762432
WindowsVersion : 10.0.19045
WorkingSetSize : 2629632
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : FoxitPDFReaderUpdateService.exe
Handles : 159
VM : 63762432
WS : 2629632
Path : C:\Program Files (x86)\Common Files\Foxit\Foxit PDF
Reader\FoxitPDFReaderUpdateService.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="8668"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="8668"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k appmodel -p -s
camsvc
CreationClassName : Win32_Process
CreationDate : 20230724141321.868606+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 8668
HandleCount : 149
InstallDate :
KernelModeTime : 1406250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 177
OtherTransferCount : 8354
PageFaults : 4040
PageFileUsage : 3744
ParentProcessId : 944
PeakPageFileUsage : 4656
PeakVirtualSize : 2203409940480
PeakWorkingSetSize : 12912
Priority : 8
PrivatePageCount : 3833856
ProcessId : 8668
QuotaNonPagedPoolUsage : 14
QuotaPagedPoolUsage : 78
QuotaPeakNonPagedPoolUsage : 14
QuotaPeakPagedPoolUsage : 79
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 625000
VirtualSize : 2203408977920
WindowsVersion : 10.0.19045
WorkingSetSize : 13209600
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 149
VM : 2203408977920
WS : 13209600
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2988"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2988"
Caption : TextInputHost.exe
CommandLine : "C:\Windows\SystemApps\
MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe" -Serve
rName:InputApp.AppXjd5de1g66v206tj52m9d0dtpppx4cgpn.mca
CreationClassName : Win32_Process
CreationDate : 20230724141322.070882+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : TextInputHost.exe
ExecutablePath : C:\Windows\SystemApps\
MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe
ExecutionState :
Handle : 2988
HandleCount : 564
InstallDate :
KernelModeTime : 3437500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : TextInputHost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 751
OtherTransferCount : 7654
PageFaults : 16246
PageFileUsage : 14152
ParentProcessId : 1176
PeakPageFileUsage : 14568
PeakVirtualSize : 2203743813632
PeakWorkingSetSize : 58156
Priority : 8
PrivatePageCount : 14491648
ProcessId : 2988
QuotaNonPagedPoolUsage : 24
QuotaPagedPoolUsage : 624
QuotaPeakNonPagedPoolUsage : 25
QuotaPeakPagedPoolUsage : 629
ReadOperationCount : 2
ReadTransferCount : 37192
SessionId : 1
Status :
TerminationDate :
ThreadCount : 10
UserModeTime : 2500000
VirtualSize : 2203734220800
WindowsVersion : 10.0.19045
WorkingSetSize : 58523648
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : TextInputHost.exe
Handles : 564
VM : 2203734220800
WS : 58523648
Path : C:\Windows\SystemApps\
MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5496"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5496"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k UdkSvcGroup -s
UdkUserSvc
CreationClassName : Win32_Process
CreationDate : 20230724141733.362407+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 5496
HandleCount : 163
InstallDate :
KernelModeTime : 312500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 181
OtherTransferCount : 8492
PageFaults : 3570
PageFileUsage : 3584
ParentProcessId : 944
PeakPageFileUsage : 4764
PeakVirtualSize : 2203445157888
PeakWorkingSetSize : 12520
Priority : 8
PrivatePageCount : 3670016
ProcessId : 5496
QuotaNonPagedPoolUsage : 13
QuotaPagedPoolUsage : 145
QuotaPeakNonPagedPoolUsage : 14
QuotaPeakPagedPoolUsage : 145
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 1
Status :
TerminationDate :
ThreadCount : 2
UserModeTime : 312500
VirtualSize : 2203441999872
WindowsVersion : 10.0.19045
WorkingSetSize : 12705792
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 163
VM : 2203441999872
WS : 12705792
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="13124"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="13124"
Caption : SystemSettingsBroker.exe
CommandLine : C:\Windows\System32\SystemSettingsBroker.exe -
Embedding
CreationClassName : Win32_Process
CreationDate : 20230724141733.688550+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : SystemSettingsBroker.exe
ExecutablePath : C:\Windows\System32\SystemSettingsBroker.exe
ExecutionState :
Handle : 13124
HandleCount : 550
InstallDate :
KernelModeTime : 6250000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : SystemSettingsBroker.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2669
OtherTransferCount : 73352
PageFaults : 12470
PageFileUsage : 10144
ParentProcessId : 1176
PeakPageFileUsage : 11144
PeakVirtualSize : 2203561144320
PeakWorkingSetSize : 38432
Priority : 8
PrivatePageCount : 10387456
ProcessId : 13124
QuotaNonPagedPoolUsage : 32
QuotaPagedPoolUsage : 367
QuotaPeakNonPagedPoolUsage : 38
QuotaPeakPagedPoolUsage : 393
ReadOperationCount : 2
ReadTransferCount : 116
SessionId : 1
Status :
TerminationDate :
ThreadCount : 19
UserModeTime : 3750000
VirtualSize : 2203548680192
WindowsVersion : 10.0.19045
WorkingSetSize : 36286464
WriteOperationCount : 1
WriteTransferCount : 160
PSComputerName : XOANI-G1-LAPTOP
ProcessName : SystemSettingsBroker.exe
Handles : 550
VM : 2203548680192
WS : 36286464
Path : C:\Windows\System32\SystemSettingsBroker.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4528"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4528"
Caption : cmd.exe
CommandLine : "C:\Windows\system32\cmd.exe"
CreationClassName : Win32_Process
CreationDate : 20230724142002.101387+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : cmd.exe
ExecutablePath : C:\Windows\system32\cmd.exe
ExecutionState :
Handle : 4528
HandleCount : 77
InstallDate :
KernelModeTime : 781250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : cmd.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 648
OtherTransferCount : 12596
PageFaults : 2633
PageFileUsage : 4296
ParentProcessId : 5412
PeakPageFileUsage : 7088
PeakVirtualSize : 2203392032768
PeakWorkingSetSize : 6956
Priority : 8
PrivatePageCount : 4399104
ProcessId : 4528
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 47
QuotaPeakNonPagedPoolUsage : 9
QuotaPeakPagedPoolUsage : 48
ReadOperationCount : 40
ReadTransferCount : 4220
SessionId : 1
Status :
TerminationDate :
ThreadCount : 1
UserModeTime : 312500
VirtualSize : 2203389927424
WindowsVersion : 10.0.19045
WorkingSetSize : 6983680
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : cmd.exe
Handles : 77
VM : 2203389927424
WS : 6983680
Path : C:\Windows\system32\cmd.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="2864"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="2864"
Caption : conhost.exe
CommandLine : \??\C:\Windows\system32\conhost.exe 0x4
CreationClassName : Win32_Process
CreationDate : 20230724142002.117227+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : conhost.exe
ExecutablePath : C:\Windows\system32\conhost.exe
ExecutionState :
Handle : 2864
HandleCount : 276
InstallDate :
KernelModeTime : 2500000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : conhost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 952
OtherTransferCount : 39259
PageFaults : 5725
PageFileUsage : 7544
ParentProcessId : 4528
PeakPageFileUsage : 8056
PeakVirtualSize : 2203492450304
PeakWorkingSetSize : 20952
Priority : 8
PrivatePageCount : 7725056
ProcessId : 2864
QuotaNonPagedPoolUsage : 14
QuotaPagedPoolUsage : 226
QuotaPeakNonPagedPoolUsage : 15
QuotaPeakPagedPoolUsage : 243
ReadOperationCount : 18
ReadTransferCount : 7445
SessionId : 1
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 1093750
VirtualSize : 2203482058752
WindowsVersion : 10.0.19045
WorkingSetSize : 21450752
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : conhost.exe
Handles : 276
VM : 2203482058752
WS : 21450752
Path : C:\Windows\system32\conhost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="6068"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="6068"
Caption : EPSupportManager.exe
CommandLine : "C:\Program Files\Bitdefender\Endpoint Security\
EPSupportManager.exe" /process /config "EP
SupportManager.exe.xml"
CreationClassName : Win32_Process
CreationDate : 20230724142517.787277+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : EPSupportManager.exe
ExecutablePath : C:\Program Files\Bitdefender\Endpoint Security\
EPSupportManager.exe
ExecutionState :
Handle : 6068
HandleCount : 397
InstallDate :
KernelModeTime : 10625000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : EPSupportManager.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 12307
OtherTransferCount : 437562
PageFaults : 25358
PageFileUsage : 12412
ParentProcessId : 5128
PeakPageFileUsage : 13444
PeakVirtualSize : 4476952576
PeakWorkingSetSize : 23912
Priority : 8
PrivatePageCount : 12709888
ProcessId : 6068
QuotaNonPagedPoolUsage : 27
QuotaPagedPoolUsage : 236
QuotaPeakNonPagedPoolUsage : 28
QuotaPeakPagedPoolUsage : 249
ReadOperationCount : 6563
ReadTransferCount : 58957587
SessionId : 0
Status :
TerminationDate :
ThreadCount : 36
UserModeTime : 24531250
VirtualSize : 4475731968
WindowsVersion : 10.0.19045
WorkingSetSize : 23318528
WriteOperationCount : 3199
WriteTransferCount : 5243756
PSComputerName : XOANI-G1-LAPTOP
ProcessName : EPSupportManager.exe
Handles : 397
VM : 4475731968
WS : 23318528
Path : C:\Program Files\Bitdefender\Endpoint Security\
EPSupportManager.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="12480"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="12480"
Caption : WmiPrvSE.exe
CommandLine : C:\Windows\system32\wbem\wmiprvse.exe
CreationClassName : Win32_Process
CreationDate : 20230724154456.885558+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : WmiPrvSE.exe
ExecutablePath : C:\Windows\system32\wbem\wmiprvse.exe
ExecutionState :
Handle : 12480
HandleCount : 402
InstallDate :
KernelModeTime : 22968750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : WmiPrvSE.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 27502
OtherTransferCount : 1918019
PageFaults : 28639
PageFileUsage : 10048
ParentProcessId : 1176
PeakPageFileUsage : 20264
PeakVirtualSize : 2203472011264
PeakWorkingSetSize : 21620
Priority : 8
PrivatePageCount : 10289152
ProcessId : 12480
QuotaNonPagedPoolUsage : 20
QuotaPagedPoolUsage : 132
QuotaPeakNonPagedPoolUsage : 21
QuotaPeakPagedPoolUsage : 208
ReadOperationCount : 182
ReadTransferCount : 277988
SessionId : 0
Status :
TerminationDate :
ThreadCount : 15
UserModeTime : 7812500
VirtualSize : 2203431964672
WindowsVersion : 10.0.19045
WorkingSetSize : 22134784
WriteOperationCount : 180
WriteTransferCount : 17256
PSComputerName : XOANI-G1-LAPTOP
ProcessName : WmiPrvSE.exe
Handles : 402
VM : 2203431964672
WS : 22134784
Path : C:\Windows\system32\wbem\wmiprvse.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="11936"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="11936"
Caption : WmiPrvSE.exe
CommandLine : C:\Windows\system32\wbem\wmiprvse.exe
CreationClassName : Win32_Process
CreationDate : 20230724155959.186015+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : WmiPrvSE.exe
ExecutablePath : C:\Windows\system32\wbem\wmiprvse.exe
ExecutionState :
Handle : 11936
HandleCount : 188
InstallDate :
KernelModeTime : 6250000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : WmiPrvSE.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 6532
OtherTransferCount : 44096
PageFaults : 24924
PageFileUsage : 4284
ParentProcessId : 1176
PeakPageFileUsage : 9932
PeakVirtualSize : 2203421933568
PeakWorkingSetSize : 17820
Priority : 8
PrivatePageCount : 4386816
ProcessId : 11936
QuotaNonPagedPoolUsage : 12
QuotaPagedPoolUsage : 89
QuotaPeakNonPagedPoolUsage : 16
QuotaPeakPagedPoolUsage : 111
ReadOperationCount : 4
ReadTransferCount : 1393870
SessionId : 0
Status :
TerminationDate :
ThreadCount : 6
UserModeTime : 1093750
VirtualSize : 2203404034048
WindowsVersion : 10.0.19045
WorkingSetSize : 13115392
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : WmiPrvSE.exe
Handles : 188
VM : 2203404034048
WS : 13115392
Path : C:\Windows\system32\wbem\wmiprvse.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="12712"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="12712"
Caption : TeamViewer_Desktop.exe
CommandLine : "C:\Program Files (x86)\TeamViewer\
TeamViewer_Desktop.exe" --IPCport 5939 --Module 4
CreationClassName : Win32_Process
CreationDate : 20230724160724.200442+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : TeamViewer_Desktop.exe
ExecutablePath : C:\Program Files (x86)\TeamViewer\
TeamViewer_Desktop.exe
ExecutionState :
Handle : 12712
HandleCount : 610
InstallDate :
KernelModeTime : 14531250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : TeamViewer_Desktop.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 3548
OtherTransferCount : 927783
PageFaults : 48443
PageFileUsage : 99348
ParentProcessId : 8540
PeakPageFileUsage : 107656
PeakVirtualSize : 416108544
PeakWorkingSetSize : 118480
Priority : 8
PrivatePageCount : 101732352
ProcessId : 12712
QuotaNonPagedPoolUsage : 35
QuotaPagedPoolUsage : 449
QuotaPeakNonPagedPoolUsage : 71
QuotaPeakPagedPoolUsage : 456
ReadOperationCount : 18
ReadTransferCount : 6753464
SessionId : 1
Status :
TerminationDate :
ThreadCount : 22
UserModeTime : 34218750
VirtualSize : 407605248
WindowsVersion : 10.0.19045
WorkingSetSize : 112996352
WriteOperationCount : 115
WriteTransferCount : 15104
PSComputerName : XOANI-G1-LAPTOP
ProcessName : TeamViewer_Desktop.exe
Handles : 610
VM : 407605248
WS : 112996352
Path : C:\Program Files (x86)\TeamViewer\
TeamViewer_Desktop.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="15200"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="15200"
Caption : svchost.exe
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230724160726.650430+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath :
ExecutionState :
Handle : 15200
HandleCount : 129
InstallDate :
KernelModeTime : 156250
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 390
OtherTransferCount : 2194
PageFaults : 2175
PageFileUsage : 1804
ParentProcessId : 944
PeakPageFileUsage : 1932
PeakVirtualSize : 2203398516736
PeakWorkingSetSize : 8260
Priority : 8
PrivatePageCount : 1847296
ProcessId : 15200
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 76
QuotaPeakNonPagedPoolUsage : 9
QuotaPeakPagedPoolUsage : 76
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 156250
VirtualSize : 2203397992448
WindowsVersion : 10.0.19045
WorkingSetSize : 8425472
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 129
VM : 2203397992448
WS : 8425472
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="7704"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="7704"
Caption : audiodg.exe
CommandLine : C:\Windows\system32\AUDIODG.EXE 0x5ac
CreationClassName : Win32_Process
CreationDate : 20230724160727.198606+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : audiodg.exe
ExecutablePath : C:\Windows\system32\AUDIODG.EXE
ExecutionState :
Handle : 7704
HandleCount : 375
InstallDate :
KernelModeTime : 3281250
MaximumWorkingSetSize : 13280
MinimumWorkingSetSize : 12100
Name : audiodg.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 660
OtherTransferCount : 22772
PageFaults : 16422
PageFileUsage : 20748
ParentProcessId : 3204
PeakPageFileUsage : 37632
PeakVirtualSize : 2203501432832
PeakWorkingSetSize : 45240
Priority : 8
PrivatePageCount : 21245952
ProcessId : 7704
QuotaNonPagedPoolUsage : 22
QuotaPagedPoolUsage : 177
QuotaPeakNonPagedPoolUsage : 28
QuotaPeakPagedPoolUsage : 181
ReadOperationCount : 1
ReadTransferCount : 8617
SessionId : 0
Status :
TerminationDate :
ThreadCount : 11
UserModeTime : 3437500
VirtualSize : 2203483729920
WindowsVersion : 10.0.19045
WorkingSetSize : 28983296
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : audiodg.exe
Handles : 375
VM : 2203483729920
WS : 28983296
Path : C:\Windows\system32\AUDIODG.EXE
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="12824"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="12824"
Caption : product.console.exe
CommandLine : product.console.exe /c Support.EndSession
outputPath=C:\
CreationClassName : Win32_Process
CreationDate : 20230724160817.403631+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : product.console.exe
ExecutablePath : C:\Program Files\Bitdefender\Endpoint Security\
product.console.exe
ExecutionState :
Handle : 12824
HandleCount : 216
InstallDate :
KernelModeTime : 312500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : product.console.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 683
OtherTransferCount : 11408
PageFaults : 2865
PageFileUsage : 3436
ParentProcessId : 4528
PeakPageFileUsage : 3540
PeakVirtualSize : 4435771392
PeakWorkingSetSize : 11000
Priority : 8
PrivatePageCount : 3518464
ProcessId : 12824
QuotaNonPagedPoolUsage : 15
QuotaPagedPoolUsage : 162
QuotaPeakNonPagedPoolUsage : 16
QuotaPeakPagedPoolUsage : 166
ReadOperationCount : 98
ReadTransferCount : 12951
SessionId : 1
Status :
TerminationDate :
ThreadCount : 18
UserModeTime : 156250
VirtualSize : 4432625664
WindowsVersion : 10.0.19045
WorkingSetSize : 11202560
WriteOperationCount : 40
WriteTransferCount : 4295
PSComputerName : XOANI-G1-LAPTOP
ProcessName : product.console.exe
Handles : 216
VM : 4432625664
WS : 11202560
Path : C:\Program Files\Bitdefender\Endpoint Security\
product.console.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="12360"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="12360"
Caption : MpCmdRun.exe
CommandLine : "C:\ProgramData\Microsoft\Windows Defender\Platform\
4.18.23050.5-0\MpCmdRun.exe" Signature
Update -ScheduleJob -RestrictPrivileges
CreationClassName : Win32_Process
CreationDate : 20230724160832.853652+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : MpCmdRun.exe
ExecutablePath : C:\ProgramData\Microsoft\Windows Defender\Platform\
4.18.23050.5-0\MpCmdRun.exe
ExecutionState :
Handle : 12360
HandleCount : 176
InstallDate :
KernelModeTime : 156250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : MpCmdRun.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 135
OtherTransferCount : 2808
PageFaults : 2478
PageFileUsage : 2452
ParentProcessId : 13316
PeakPageFileUsage : 2536
PeakVirtualSize : 2203393757184
PeakWorkingSetSize : 9288
Priority : 8
PrivatePageCount : 2510848
ProcessId : 12360
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 73
QuotaPeakNonPagedPoolUsage : 10
QuotaPeakPagedPoolUsage : 74
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 7
UserModeTime : 0
VirtualSize : 2203392184320
WindowsVersion : 10.0.19045
WorkingSetSize : 9400320
WriteOperationCount : 5
WriteTransferCount : 181
PSComputerName : XOANI-G1-LAPTOP
ProcessName : MpCmdRun.exe
Handles : 176
VM : 2203392184320
WS : 9400320
Path : C:\ProgramData\Microsoft\Windows Defender\Platform\
4.18.23050.5-0\MpCmdRun.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4408"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4408"
Caption : conhost.exe
CommandLine : \??\C:\Windows\system32\conhost.exe 0x4
CreationClassName : Win32_Process
CreationDate : 20230724160832.858374+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : conhost.exe
ExecutablePath : C:\Windows\system32\conhost.exe
ExecutionState :
Handle : 4408
HandleCount : 159
InstallDate :
KernelModeTime : 156250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : conhost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 81
OtherTransferCount : 2685
PageFaults : 3632
PageFileUsage : 6700
ParentProcessId : 12360
PeakPageFileUsage : 7252
PeakVirtualSize : 2203418058752
PeakWorkingSetSize : 14068
Priority : 8
PrivatePageCount : 6860800
ProcessId : 4408
QuotaNonPagedPoolUsage : 10
QuotaPagedPoolUsage : 112
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 113
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 0
VirtualSize : 2203416141824
WindowsVersion : 10.0.19045
WorkingSetSize : 14381056
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : conhost.exe
Handles : 159
VM : 2203416141824
WS : 14381056
Path : C:\Windows\system32\conhost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="12908"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="12908"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k netsvcs -p -s gpsvc
CreationClassName : Win32_Process
CreationDate : 20230724160833.050260+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 12908
HandleCount : 173
InstallDate :
KernelModeTime : 312500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 78
OtherTransferCount : 2168
PageFaults : 2014
PageFileUsage : 1772
ParentProcessId : 944
PeakPageFileUsage : 1916
PeakVirtualSize : 2203397083136
PeakWorkingSetSize : 7680
Priority : 8
PrivatePageCount : 1814528
ProcessId : 12908
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 71
QuotaPeakNonPagedPoolUsage : 10
QuotaPeakPagedPoolUsage : 72
ReadOperationCount : 2
ReadTransferCount : 4823
SessionId : 0
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 0
VirtualSize : 2203394269184
WindowsVersion : 10.0.19045
WorkingSetSize : 7831552
WriteOperationCount : 1
WriteTransferCount : 160
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 173
VM : 2203394269184
WS : 7831552
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="13272"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="13272"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k netsvcs -p -s
wuauserv
CreationClassName : Win32_Process
CreationDate : 20230724160833.067738+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 13272
HandleCount : 779
InstallDate :
KernelModeTime : 13906250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 13181
OtherTransferCount : 971777
PageFaults : 84604
PageFileUsage : 24604
ParentProcessId : 944
PeakPageFileUsage : 32036
PeakVirtualSize : 2203701764096
PeakWorkingSetSize : 52316
Priority : 8
PrivatePageCount : 25194496
ProcessId : 13272
QuotaNonPagedPoolUsage : 80
QuotaPagedPoolUsage : 297
QuotaPeakNonPagedPoolUsage : 87
QuotaPeakPagedPoolUsage : 450
ReadOperationCount : 114
ReadTransferCount : 30645480
SessionId : 0
Status :
TerminationDate :
ThreadCount : 22
UserModeTime : 13750000
VirtualSize : 2203620405248
WindowsVersion : 10.0.19045
WorkingSetSize : 47513600
WriteOperationCount : 179
WriteTransferCount : 8594731
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 779
VM : 2203620405248
WS : 47513600
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1324"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1324"
Caption : EPProtectedService.exe
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230724160843.396286+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : EPProtectedService.exe
ExecutablePath :
ExecutionState :
Handle : 1324
HandleCount : 504
InstallDate :
KernelModeTime : 4218750
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : EPProtectedService.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 9496
OtherTransferCount : 138100
PageFaults : 9747
PageFileUsage : 22600
ParentProcessId : 944
PeakPageFileUsage : 24344
PeakVirtualSize : 4510863360
PeakWorkingSetSize : 32528
Priority : 8
PrivatePageCount : 23142400
ProcessId : 1324
QuotaNonPagedPoolUsage : 30
QuotaPagedPoolUsage : 216
QuotaPeakNonPagedPoolUsage : 34
QuotaPeakPagedPoolUsage : 227
ReadOperationCount : 20566
ReadTransferCount : 5772558
SessionId : 0
Status :
TerminationDate :
ThreadCount : 56
UserModeTime : 8906250
VirtualSize : 4503945216
WindowsVersion : 10.0.19045
WorkingSetSize : 32821248
WriteOperationCount : 355
WriteTransferCount : 158981
PSComputerName : XOANI-G1-LAPTOP
ProcessName : EPProtectedService.exe
Handles : 504
VM : 4503945216
WS : 32821248
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="14408"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="14408"
Caption : EPSecurityService.exe
CommandLine : "C:\Program Files\Bitdefender\Endpoint Security\
EPSecurityService.exe" /service
CreationClassName : Win32_Process
CreationDate : 20230724160844.625767+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : EPSecurityService.exe
ExecutablePath : C:\Program Files\Bitdefender\Endpoint Security\
EPSecurityService.exe
ExecutionState :
Handle : 14408
HandleCount : 2043
InstallDate :
KernelModeTime : 76406250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : EPSecurityService.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 186498
OtherTransferCount : 17739206
PageFaults : 474512
PageFileUsage : 690708
ParentProcessId : 944
PeakPageFileUsage : 716052
PeakVirtualSize : 6082564096
PeakWorkingSetSize : 533024
Priority : 8
PrivatePageCount : 707284992
ProcessId : 14408
QuotaNonPagedPoolUsage : 205
QuotaPagedPoolUsage : 1614
QuotaPeakNonPagedPoolUsage : 209
QuotaPeakPagedPoolUsage : 1699
ReadOperationCount : 153454
ReadTransferCount : 605280616
SessionId : 0
Status :
TerminationDate :
ThreadCount : 194
UserModeTime : 139687500
VirtualSize : 5979041792
WindowsVersion : 10.0.19045
WorkingSetSize : 525774848
WriteOperationCount : 30077
WriteTransferCount : 77257856
PSComputerName : XOANI-G1-LAPTOP
ProcessName : EPSecurityService.exe
Handles : 2043
VM : 5979041792
WS : 525774848
Path : C:\Program Files\Bitdefender\Endpoint Security\
EPSecurityService.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="13084"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="13084"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k netsvcs -p -s
NetSetupSvc
CreationClassName : Win32_Process
CreationDate : 20230724160905.919109+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 13084
HandleCount : 118
InstallDate :
KernelModeTime : 625000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 178
OtherTransferCount : 5056
PageFaults : 2749
PageFileUsage : 1716
ParentProcessId : 944
PeakPageFileUsage : 1808
PeakVirtualSize : 2203391901696
PeakWorkingSetSize : 7612
Priority : 8
PrivatePageCount : 1757184
ProcessId : 13084
QuotaNonPagedPoolUsage : 9
QuotaPagedPoolUsage : 60
QuotaPeakNonPagedPoolUsage : 9
QuotaPeakPagedPoolUsage : 62
ReadOperationCount : 1
ReadTransferCount : 512
SessionId : 0
Status :
TerminationDate :
ThreadCount : 7
UserModeTime : 156250
VirtualSize : 2203389947904
WindowsVersion : 10.0.19045
WorkingSetSize : 7262208
WriteOperationCount : 1
WriteTransferCount : 512
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 118
VM : 2203389947904
WS : 7262208
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="9504"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="9504"
Caption : EPHost.exe
CommandLine : "C:\Program Files\Bitdefender\Endpoint Security\
ephost.exe" /process /worker /lockfile /co
nfig "EPPatchManagementService.exe.xml"
CreationClassName : Win32_Process
CreationDate : 20230724160917.566989+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : EPHost.exe
ExecutablePath : C:\Program Files\Bitdefender\Endpoint Security\
ephost.exe
ExecutionState :
Handle : 9504
HandleCount : 373
InstallDate :
KernelModeTime : 781250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : EPHost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 907
OtherTransferCount : 17336
PageFaults : 5012
PageFileUsage : 9360
ParentProcessId : 14408
PeakPageFileUsage : 9368
PeakVirtualSize : 4447612928
PeakWorkingSetSize : 18984
Priority : 8
PrivatePageCount : 9584640
ProcessId : 9504
QuotaNonPagedPoolUsage : 26
QuotaPagedPoolUsage : 210
QuotaPeakNonPagedPoolUsage : 29
QuotaPeakPagedPoolUsage : 214
ReadOperationCount : 220
ReadTransferCount : 98317
SessionId : 0
Status :
TerminationDate :
ThreadCount : 27
UserModeTime : 625000
VirtualSize : 4447612928
WindowsVersion : 10.0.19045
WorkingSetSize : 19435520
WriteOperationCount : 76
WriteTransferCount : 16966
PSComputerName : XOANI-G1-LAPTOP
ProcessName : EPHost.exe
Handles : 373
VM : 4447612928
WS : 19435520
Path : C:\Program Files\Bitdefender\Endpoint Security\
ephost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="12460"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="12460"
Caption : EPHost.Integrity.exe
CommandLine :
CreationClassName : Win32_Process
CreationDate : 20230724160917.633788+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : EPHost.Integrity.exe
ExecutablePath :
ExecutionState :
Handle : 12460
HandleCount : 397
InstallDate :
KernelModeTime : 1250000
MaximumWorkingSetSize :
MinimumWorkingSetSize :
Name : EPHost.Integrity.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 1683
OtherTransferCount : 25714
PageFaults : 7241
PageFileUsage : 10084
ParentProcessId : 14408
PeakPageFileUsage : 10084
PeakVirtualSize : 4445274112
PeakWorkingSetSize : 20864
Priority : 8
PrivatePageCount : 10326016
ProcessId : 12460
QuotaNonPagedPoolUsage : 24
QuotaPagedPoolUsage : 201
QuotaPeakNonPagedPoolUsage : 24
QuotaPeakPagedPoolUsage : 205
ReadOperationCount : 229
ReadTransferCount : 185232
SessionId : 0
Status :
TerminationDate :
ThreadCount : 29
UserModeTime : 1093750
VirtualSize : 4445274112
WindowsVersion : 10.0.19045
WorkingSetSize : 21360640
WriteOperationCount : 70
WriteTransferCount : 13653
PSComputerName : XOANI-G1-LAPTOP
ProcessName : EPHost.Integrity.exe
Handles : 397
VM : 4445274112
WS : 21360640
Path :
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="9720"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="9720"
Caption : EPConsole.exe
CommandLine : "C:\Program Files\Bitdefender\Endpoint Security\
EPConsole.exe" /hidden
CreationClassName : Win32_Process
CreationDate : 20230724160918.149509+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : EPConsole.exe
ExecutablePath : C:\Program Files\Bitdefender\Endpoint Security\
EPConsole.exe
ExecutionState :
Handle : 9720
HandleCount : 568
InstallDate :
KernelModeTime : 2968750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : EPConsole.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2628
OtherTransferCount : 91962
PageFaults : 20681
PageFileUsage : 40620
ParentProcessId : 14408
PeakPageFileUsage : 40664
PeakVirtualSize : 4737462272
PeakWorkingSetSize : 62712
Priority : 8
PrivatePageCount : 41594880
ProcessId : 9720
QuotaNonPagedPoolUsage : 42
QuotaPagedPoolUsage : 532
QuotaPeakNonPagedPoolUsage : 44
QuotaPeakPagedPoolUsage : 536
ReadOperationCount : 861
ReadTransferCount : 348325
SessionId : 1
Status :
TerminationDate :
ThreadCount : 32
UserModeTime : 4687500
VirtualSize : 4736413696
WindowsVersion : 10.0.19045
WorkingSetSize : 64212992
WriteOperationCount : 329
WriteTransferCount : 98154
PSComputerName : XOANI-G1-LAPTOP
ProcessName : EPConsole.exe
Handles : 568
VM : 4736413696
WS : 64212992
Path : C:\Program Files\Bitdefender\Endpoint Security\
EPConsole.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="1640"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="1640"
Caption : svchost.exe
CommandLine : C:\Windows\System32\svchost.exe -k WerSvcGroup
CreationClassName : Win32_Process
CreationDate : 20230724160920.365718+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\System32\svchost.exe
ExecutionState :
Handle : 1640
HandleCount : 118
InstallDate :
KernelModeTime : 1406250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 434
OtherTransferCount : 15974
PageFaults : 2715
PageFileUsage : 2964
ParentProcessId : 944
PeakPageFileUsage : 4376
PeakVirtualSize : 2203398533120
PeakWorkingSetSize : 8680
Priority : 8
PrivatePageCount : 3035136
ProcessId : 1640
QuotaNonPagedPoolUsage : 11
QuotaPagedPoolUsage : 53
QuotaPeakNonPagedPoolUsage : 11
QuotaPeakPagedPoolUsage : 56
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 625000
VirtualSize : 2203397832704
WindowsVersion : 10.0.19045
WorkingSetSize : 8515584
WriteOperationCount : 7303
WriteTransferCount : 113610
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 118
VM : 2203397832704
WS : 8515584
Path : C:\Windows\System32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4052"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4052"
Caption : svchost.exe
CommandLine : C:\Windows\system32\svchost.exe -k netsvcs -p -s
wlidsvc
CreationClassName : Win32_Process
CreationDate : 20230724160920.725085+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : svchost.exe
ExecutablePath : C:\Windows\system32\svchost.exe
ExecutionState :
Handle : 4052
HandleCount : 373
InstallDate :
KernelModeTime : 2187500
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : svchost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 728
OtherTransferCount : 50711
PageFaults : 5353
PageFileUsage : 6212
ParentProcessId : 944
PeakPageFileUsage : 6488
PeakVirtualSize : 2203441577984
PeakWorkingSetSize : 19380
Priority : 8
PrivatePageCount : 6361088
ProcessId : 4052
QuotaNonPagedPoolUsage : 22
QuotaPagedPoolUsage : 139
QuotaPeakNonPagedPoolUsage : 23
QuotaPeakPagedPoolUsage : 140
ReadOperationCount : 8
ReadTransferCount : 55904
SessionId : 0
Status :
TerminationDate :
ThreadCount : 11
UserModeTime : 625000
VirtualSize : 2203441508352
WindowsVersion : 10.0.19045
WorkingSetSize : 19726336
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : svchost.exe
Handles : 373
VM : 2203441508352
WS : 19726336
Path : C:\Windows\system32\svchost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="11016"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="11016"
Caption : SearchProtocolHost.exe
CommandLine : "C:\Windows\system32\SearchProtocolHost.exe" Global\
UsGthrFltPipeMssGthrPipe8_ Global\UsGt
hrCtrlFltPipeMssGthrPipe8 1 -2147483646 "Software\
Microsoft\Windows Search" "Mozilla/4.0 (
compatible; MSIE 6.0; Windows NT; MS Search 4.0
Robot)" "C:\ProgramData\Microsoft\Search\D
ata\Temp\usgthrsvc" "DownLevelDaemon"
CreationClassName : Win32_Process
CreationDate : 20230724160921.512311+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : SearchProtocolHost.exe
ExecutablePath : C:\Windows\system32\SearchProtocolHost.exe
ExecutionState :
Handle : 11016
HandleCount : 358
InstallDate :
KernelModeTime : 781250
MaximumWorkingSetSize : 32768
MinimumWorkingSetSize : 200
Name : SearchProtocolHost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 923
OtherTransferCount : 17106
PageFaults : 4461
PageFileUsage : 5292
ParentProcessId : 8320
PeakPageFileUsage : 5292
PeakVirtualSize : 2203434913792
PeakWorkingSetSize : 17108
Priority : 4
PrivatePageCount : 5419008
ProcessId : 11016
QuotaNonPagedPoolUsage : 17
QuotaPagedPoolUsage : 143
QuotaPeakNonPagedPoolUsage : 18
QuotaPeakPagedPoolUsage : 143
ReadOperationCount : 6
ReadTransferCount : 11879
SessionId : 0
Status :
TerminationDate :
ThreadCount : 8
UserModeTime : 156250
VirtualSize : 2203434913792
WindowsVersion : 10.0.19045
WorkingSetSize : 17514496
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : SearchProtocolHost.exe
Handles : 358
VM : 2203434913792
WS : 17514496
Path : C:\Windows\system32\SearchProtocolHost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="6892"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="6892"
Caption : SearchFilterHost.exe
CommandLine : "C:\Windows\system32\SearchFilterHost.exe" 0 792 796
804 8192 800 776
CreationClassName : Win32_Process
CreationDate : 20230724160921.577648+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : SearchFilterHost.exe
ExecutablePath : C:\Windows\system32\SearchFilterHost.exe
ExecutionState :
Handle : 6892
HandleCount : 151
InstallDate :
KernelModeTime : 156250
MaximumWorkingSetSize : 32768
MinimumWorkingSetSize : 200
Name : SearchFilterHost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 122
OtherTransferCount : 7490
PageFaults : 2653
PageFileUsage : 4144
ParentProcessId : 8320
PeakPageFileUsage : 4144
PeakVirtualSize : 2203410198528
PeakWorkingSetSize : 10136
Priority : 4
PrivatePageCount : 4243456
ProcessId : 6892
QuotaNonPagedPoolUsage : 12
QuotaPagedPoolUsage : 100
QuotaPeakNonPagedPoolUsage : 12
QuotaPeakPagedPoolUsage : 102
ReadOperationCount : 1
ReadTransferCount : 5149
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 156250
VirtualSize : 2203410194432
WindowsVersion : 10.0.19045
WorkingSetSize : 10375168
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : SearchFilterHost.exe
Handles : 151
VM : 2203410194432
WS : 10375168
Path : C:\Windows\system32\SearchFilterHost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="11172"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="11172"
Caption : EPIntegrationService.exe
CommandLine : "C:\Program Files\Bitdefender\Endpoint Security\
EPIntegrationService.exe" /service
CreationClassName : Win32_Process
CreationDate : 20230724160922.936875+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : EPIntegrationService.exe
ExecutablePath : C:\Program Files\Bitdefender\Endpoint Security\
EPIntegrationService.exe
ExecutionState :
Handle : 11172
HandleCount : 850
InstallDate :
KernelModeTime : 4218750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : EPIntegrationService.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 8497
OtherTransferCount : 197258
PageFaults : 20464
PageFileUsage : 25032
ParentProcessId : 944
PeakPageFileUsage : 25040
PeakVirtualSize : 4562935808
PeakWorkingSetSize : 52960
Priority : 8
PrivatePageCount : 25632768
ProcessId : 11172
QuotaNonPagedPoolUsage : 56
QuotaPagedPoolUsage : 318
QuotaPeakNonPagedPoolUsage : 60
QuotaPeakPagedPoolUsage : 322
ReadOperationCount : 1561
ReadTransferCount : 2607735
SessionId : 0
Status :
TerminationDate :
ThreadCount : 75
UserModeTime : 4062500
VirtualSize : 4561887232
WindowsVersion : 10.0.19045
WorkingSetSize : 54226944
WriteOperationCount : 851
WriteTransferCount : 708758
PSComputerName : XOANI-G1-LAPTOP
ProcessName : EPIntegrationService.exe
Handles : 850
VM : 4561887232
WS : 54226944
Path : C:\Program Files\Bitdefender\Endpoint Security\
EPIntegrationService.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="6428"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="6428"
Caption : cmd.exe
CommandLine : "c:\windows\system32\cmd.exe" /c msinfo32 /nfo "C:\
Windows\Temp\EndpointST\ENDPOINT_SUPPOR
T_TOOL_9fbe560c-ad25-4f78-7308-5d6d2b3e1fa1\
msinfo32export.nfo"
CreationClassName : Win32_Process
CreationDate : 20230724160934.819686+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : cmd.exe
ExecutablePath : c:\windows\system32\cmd.exe
ExecutionState :
Handle : 6428
HandleCount : 73
InstallDate :
KernelModeTime : 0
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : cmd.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 85
OtherTransferCount : 2438
PageFaults : 1220
PageFileUsage : 4308
ParentProcessId : 6068
PeakPageFileUsage : 4308
PeakVirtualSize : 2203378561024
PeakWorkingSetSize : 4556
Priority : 8
PrivatePageCount : 4411392
ProcessId : 6428
QuotaNonPagedPoolUsage : 6
QuotaPagedPoolUsage : 43
QuotaPeakNonPagedPoolUsage : 6
QuotaPeakPagedPoolUsage : 43
ReadOperationCount : 29
ReadTransferCount : 3232
SessionId : 0
Status :
TerminationDate :
ThreadCount : 3
UserModeTime : 0
VirtualSize : 2203378561024
WindowsVersion : 10.0.19045
WorkingSetSize : 4661248
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : cmd.exe
Handles : 73
VM : 2203378561024
WS : 4661248
Path : c:\windows\system32\cmd.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="15056"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="15056"
Caption : conhost.exe
CommandLine : \??\C:\Windows\system32\conhost.exe 0x4
CreationClassName : Win32_Process
CreationDate : 20230724160934.897123+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : conhost.exe
ExecutablePath : C:\Windows\system32\conhost.exe
ExecutionState :
Handle : 15056
HandleCount : 101
InstallDate :
KernelModeTime : 0
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : conhost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 73
OtherTransferCount : 2262
PageFaults : 2835
PageFileUsage : 6284
ParentProcessId : 6428
PeakPageFileUsage : 6284
PeakVirtualSize : 2203401609216
PeakWorkingSetSize : 11056
Priority : 8
PrivatePageCount : 6434816
ProcessId : 15056
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 79
QuotaPeakNonPagedPoolUsage : 8
QuotaPeakPagedPoolUsage : 80
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 156250
VirtualSize : 2203401609216
WindowsVersion : 10.0.19045
WorkingSetSize : 11317248
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : conhost.exe
Handles : 101
VM : 2203401609216
WS : 11317248
Path : C:\Windows\system32\conhost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="8632"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="8632"
Caption : msinfo32.exe
CommandLine : msinfo32 /nfo "C:\Windows\Temp\EndpointST\
ENDPOINT_SUPPORT_TOOL_9fbe560c-ad25-4f78-7308-5
d6d2b3e1fa1\msinfo32export.nfo"
CreationClassName : Win32_Process
CreationDate : 20230724160935.009842+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : msinfo32.exe
ExecutablePath : C:\Windows\system32\msinfo32.exe
ExecutionState :
Handle : 8632
HandleCount : 200
InstallDate :
KernelModeTime : 781250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : msinfo32.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 600
OtherTransferCount : 135756
PageFaults : 3980
PageFileUsage : 3184
ParentProcessId : 6428
PeakPageFileUsage : 3244
PeakVirtualSize : 2203421118464
PeakWorkingSetSize : 13348
Priority : 8
PrivatePageCount : 3260416
ProcessId : 8632
QuotaNonPagedPoolUsage : 14
QuotaPagedPoolUsage : 119
QuotaPeakNonPagedPoolUsage : 17
QuotaPeakPagedPoolUsage : 123
ReadOperationCount : 3
ReadTransferCount : 1267
SessionId : 0
Status :
TerminationDate :
ThreadCount : 8
UserModeTime : 781250
VirtualSize : 2203419484160
WindowsVersion : 10.0.19045
WorkingSetSize : 13307904
WriteOperationCount : 3
WriteTransferCount : 28
PSComputerName : XOANI-G1-LAPTOP
ProcessName : msinfo32.exe
Handles : 200
VM : 2203419484160
WS : 13307904
Path : C:\Windows\system32\msinfo32.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="11736"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="11736"
Caption : powershell.exe
CommandLine : "c:\windows\system32\windowspowershell\v1.0\
powershell.exe" Get-WmiObject -class win32_qui
ckfixengineering | Out-File -FilePath "C:\Windows\
Temp\EndpointST\ENDPOINT_SUPPORT_TOOL_9f
be560c-ad25-4f78-7308-5d6d2b3e1fa1\
windows_updates.txt"
CreationClassName : Win32_Process
CreationDate : 20230724160935.883803+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : powershell.exe
ExecutablePath : c:\windows\system32\windowspowershell\v1.0\
powershell.exe
ExecutionState :
Handle : 11736
HandleCount : 545
InstallDate :
KernelModeTime : 2500000
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : powershell.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2324
OtherTransferCount : 48186
PageFaults : 18007
PageFileUsage : 60020
ParentProcessId : 6068
PeakPageFileUsage : 60180
PeakVirtualSize : 2203993055232
PeakWorkingSetSize : 66120
Priority : 8
PrivatePageCount : 61460480
ProcessId : 11736
QuotaNonPagedPoolUsage : 29
QuotaPagedPoolUsage : 422
QuotaPeakNonPagedPoolUsage : 30
QuotaPeakPagedPoolUsage : 425
ReadOperationCount : 121
ReadTransferCount : 293460
SessionId : 0
Status :
TerminationDate :
ThreadCount : 23
UserModeTime : 3593750
VirtualSize : 2203992563712
WindowsVersion : 10.0.19045
WorkingSetSize : 67473408
WriteOperationCount : 34
WriteTransferCount : 75734
PSComputerName : XOANI-G1-LAPTOP
ProcessName : powershell.exe
Handles : 545
VM : 2203992563712
WS : 67473408
Path : c:\windows\system32\windowspowershell\v1.0\
powershell.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="12504"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="12504"
Caption : powershell.exe
CommandLine : "c:\windows\system32\windowspowershell\v1.0\
powershell.exe" Get-WmiObject -class win32_pro
cess | Out-File -FilePath "C:\Windows\Temp\EndpointST\
ENDPOINT_SUPPORT_TOOL_9fbe560c-ad25-
4f78-7308-5d6d2b3e1fa1\process_details_output.txt"
CreationClassName : Win32_Process
CreationDate : 20230724160935.884522+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : powershell.exe
ExecutablePath : c:\windows\system32\windowspowershell\v1.0\
powershell.exe
ExecutionState :
Handle : 12504
HandleCount : 545
InstallDate :
KernelModeTime : 1718750
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : powershell.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 2331
OtherTransferCount : 48064
PageFaults : 17960
PageFileUsage : 59892
ParentProcessId : 6068
PeakPageFileUsage : 60056
PeakVirtualSize : 2203993006080
PeakWorkingSetSize : 66000
Priority : 8
PrivatePageCount : 61329408
ProcessId : 12504
QuotaNonPagedPoolUsage : 29
QuotaPagedPoolUsage : 422
QuotaPeakNonPagedPoolUsage : 30
QuotaPeakPagedPoolUsage : 425
ReadOperationCount : 121
ReadTransferCount : 293460
SessionId : 0
Status :
TerminationDate :
ThreadCount : 23
UserModeTime : 3125000
VirtualSize : 2203992514560
WindowsVersion : 10.0.19045
WorkingSetSize : 67342336
WriteOperationCount : 34
WriteTransferCount : 75684
PSComputerName : XOANI-G1-LAPTOP
ProcessName : powershell.exe
Handles : 545
VM : 2203992514560
WS : 67342336
Path : c:\windows\system32\windowspowershell\v1.0\
powershell.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="4432"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="4432"
Caption : conhost.exe
CommandLine : \??\C:\Windows\system32\conhost.exe 0x4
CreationClassName : Win32_Process
CreationDate : 20230724160936.044254+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : conhost.exe
ExecutablePath : C:\Windows\system32\conhost.exe
ExecutionState :
Handle : 4432
HandleCount : 101
InstallDate :
KernelModeTime : 156250
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : conhost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 98
OtherTransferCount : 4414
PageFaults : 2848
PageFileUsage : 6320
ParentProcessId : 12504
PeakPageFileUsage : 6320
PeakVirtualSize : 2203402133504
PeakWorkingSetSize : 11092
Priority : 8
PrivatePageCount : 6471680
ProcessId : 4432
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 79
QuotaPeakNonPagedPoolUsage : 8
QuotaPeakPagedPoolUsage : 80
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 5
UserModeTime : 156250
VirtualSize : 2203402133504
WindowsVersion : 10.0.19045
WorkingSetSize : 11354112
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : conhost.exe
Handles : 101
VM : 2203402133504
WS : 11354112
Path : C:\Windows\system32\conhost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="5900"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="5900"
Caption : conhost.exe
CommandLine : \??\C:\Windows\system32\conhost.exe 0x4
CreationClassName : Win32_Process
CreationDate : 20230724160936.072784+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : conhost.exe
ExecutablePath : C:\Windows\system32\conhost.exe
ExecutionState :
Handle : 5900
HandleCount : 101
InstallDate :
KernelModeTime : 0
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : conhost.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 98
OtherTransferCount : 4414
PageFaults : 2845
PageFileUsage : 6284
ParentProcessId : 11736
PeakPageFileUsage : 6316
PeakVirtualSize : 2203402133504
PeakWorkingSetSize : 11076
Priority : 8
PrivatePageCount : 6434816
ProcessId : 5900
QuotaNonPagedPoolUsage : 8
QuotaPagedPoolUsage : 79
QuotaPeakNonPagedPoolUsage : 8
QuotaPeakPagedPoolUsage : 80
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 4
UserModeTime : 156250
VirtualSize : 2203401609216
WindowsVersion : 10.0.19045
WorkingSetSize : 11333632
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : conhost.exe
Handles : 101
VM : 2203401609216
WS : 11333632
Path : C:\Windows\system32\conhost.exe
__GENUS : 2
__CLASS : Win32_Process
__SUPERCLASS : CIM_Process
__DYNASTY : CIM_ManagedSystemElement
__RELPATH : Win32_Process.Handle="9036"
__PROPERTY_COUNT : 45
__DERIVATION : {CIM_Process, CIM_LogicalElement,
CIM_ManagedSystemElement}
__SERVER : XOANI-G1-LAPTOP
__NAMESPACE : root\cimv2
__PATH : \\XOANI-G1-LAPTOP\root\
cimv2:Win32_Process.Handle="9036"
Caption : TrustedInstaller.exe
CommandLine : C:\Windows\servicing\TrustedInstaller.exe
CreationClassName : Win32_Process
CreationDate : 20230724160937.424973+180
CSCreationClassName : Win32_ComputerSystem
CSName : XOANI-G1-LAPTOP
Description : TrustedInstaller.exe
ExecutablePath :
ExecutionState :
Handle : 9036
HandleCount : 0
InstallDate :
KernelModeTime : 0
MaximumWorkingSetSize : 1380
MinimumWorkingSetSize : 200
Name : TrustedInstaller.exe
OSCreationClassName : Win32_OperatingSystem
OSName : Microsoft Windows 10 Pro|C:\Windows|\Device\Harddisk0\
Partition3
OtherOperationCount : 0
OtherTransferCount : 0
PageFaults : 399
PageFileUsage : 436
ParentProcessId : 944
PeakPageFileUsage : 436
PeakVirtualSize : 2199028547584
PeakWorkingSetSize : 1500
Priority : 8
PrivatePageCount : 446464
ProcessId : 9036
QuotaNonPagedPoolUsage : 2
QuotaPagedPoolUsage : 9
QuotaPeakNonPagedPoolUsage : 2
QuotaPeakPagedPoolUsage : 9
ReadOperationCount : 0
ReadTransferCount : 0
SessionId : 0
Status :
TerminationDate :
ThreadCount : 1
UserModeTime : 0
VirtualSize : 2199028547584
WindowsVersion : 10.0.19045
WorkingSetSize : 1531904
WriteOperationCount : 0
WriteTransferCount : 0
PSComputerName : XOANI-G1-LAPTOP
ProcessName : TrustedInstaller.exe
Handles : 0
VM : 2199028547584
WS : 1531904
Path :