services.exe
Applications Services et Contrôleur by Microsoft
Version: | 5.1.2600.5922 (xpsp_sp3_qfe.091223-1723) |
MD5: | efa4ea36a72db28f0be04b40c9cb2388 |
SHA1: | fed60326f40b2236bb687d24f8bf7580decdcd89 |
This is a Windows system installed file with Windows File Protection (WFP) enabled.
Overview
services.exe runs as a service under the name Journal des événements (Eventlog) within the local user context as a shared service. This version is installed on Windows XP and is compiled as a 32 bit program.
Details
File name: | services.exe |
Publisher: | Microsoft Corporation |
Product name: | Applications Services et Contrôleur |
Description: | Système d'exploitation Microsoft® Windows® |
Typical file path: | C:\Windows\System32\services.exe |
File version: | 5.1.2600.5922 (xpsp_sp3_qfe.091223-1723) |
Product version: | 5.1.2600.5922 |
Size: | 108.5 KB (111,104 bytes) |
Build date: | 12/23/2009 4:05 PM |
Digital DNA |
PE subsystem: | Windows GUI |
File packed: | No |
Code language: | Microsoft Visual C++ |
.NET CLR: | No |
More details
Behaviors
Service
Runs under 'SYSTEM\CurrentControlSet\Services' as a shared service by the Service Host (svchost.exe)
- 'Eventlog' (Journal des événements)
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.00345526% | |
Kernel CPU: | 0.00184582% | |
User CPU: | 0.00160944% | |
Kernel CPU time: | 7,750 ms/min | |
Context switches: | 28/sec | |
Memory |
Private memory: | 2.98 MB | |
Private (maximum): | 3.9 MB | |
Private (minimum): | 672 KB | |
Non-paged memory: | 2.98 MB | |
Virtual memory: | 25.71 MB | |
Virtual memory (peak): | 28.84 MB | |
Working set: | 2.75 MB | |
Working set (peak): | 4.42 MB | |
Resource allocations |
Threads: | 15 | |
Handles: | 313 | |
GUI GDI count: | 4 | |
GUI USER count: | 2 | |
Process properties
Integrety level: | Undefined |
Platform: | 32-bit |
Command line: | C:\Windows\System32\services.exe |
Owner: | User |
Windows Service |
Service name: | Eventlog |
Display name: | Journal des événements |
Description: | “Active les messages d'événements émis par les programmes fonctionnant sous Windows et les composants devant être affichés dans l'observateur d'événements. Ce service ne peut être arrêté.” |
Type: | Win32ShareProcess |
Parent process: | winlogon.exe (Application d'ouverture de session Windows NT by Microsoft) |
Distribution by Windows OS
OS version | distribution |
Microsoft Windows XP |
100.00% |
|
Distribution by country
MA installs about 50.00% of Applications Services et Contrôleur.
Distribution by PC manufacturer
PC Manufacturer | distribution |
Compaq |
100.00% |
|