Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

5.5.0.03040 28.13%
5.3.0.05310 18.75%
5.2.1.05130 4.69%
5.2.0.12300 1.56%
5.0.3.05060 15.63%
5.0.0.06050 4.69%
4.2.0.11050 1.56%
4.2.0.10070 4.69%
4.0.00.13310 7.81%
3.1.00.13250 7.81%
3.0.00.13060 1.56%
2.3.00.04130 1.56%
2.2.00.04040 1.56%

Relationships

Parent process
Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
CreateServiceW, RegEnumKeyExW, SetServiceStatus, RegisterEventSourceW, ReportEventW, DeregisterEventSource, RegQueryInfoKeyW, RegSetValueExW, RegQueryValueExW, RegOpenKeyExW, RegCreateKeyExW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW, ControlService, ChangeServiceConfigW, OpenSCManagerW, OpenServiceW, QueryServiceConfigW, CloseServiceHandle, EqualSid, GetSecurityDescriptorDacl, AllocateAndInitializeSid, GetLengthSid, InitializeAcl, AddAccessDeniedAce, AddAccessAllowedAce, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, FreeSid, AdjustTokenPrivileges, OpenProcessToken, GetTokenInformation, LookupPrivilegeValueW, ChangeServiceConfig2W, CreateProcessAsUserW, SetTokenInformation, DuplicateTokenEx, RegisterServiceCtrlHandlerExW, StartServiceCtrlDispatcherW, DeleteService
crypt32.dll
CertFreeCertificateContext, CryptMsgClose, CertGetNameStringW, CertFindCertificateInStore, CryptMsgGetParam, CryptQueryObject, CertCloseStore
imm32.dll
ImmDisableIME
kernel32.dll
DuplicateHandle, OpenProcess, GetCurrentProcessId, MultiByteToWideChar, LoadLibraryExW, CancelWaitableTimer, SetWaitableTimer, CreateWaitableTimerW, GetCommandLineW, CreateFileW, CreateSemaphoreW, OpenSemaphoreW, OpenWaitableTimerW, GetCurrentThreadId, GetTickCount, HeapFree, HeapAlloc, GetProcessHeap, GetPrivateProfileIntW, QueryPerformanceCounter, GetStartupInfoW, GetModuleHandleA, ExitProcess, HeapSize, HeapReAlloc, HeapDestroy, GetVersionExA, GetSystemDefaultLCID, lstrcpynW, GetModuleFileNameW, lstrcatW, lstrcmpiW, InterlockedDecrement, InterlockedIncrement, FindResourceW, FindResourceExW, LoadResource, LockResource, SizeofResource, DeleteCriticalSection, InitializeCriticalSection, LeaveCriticalSection, EnterCriticalSection, Sleep, CreateThread, lstrcpyW, ResetEvent, ReleaseMutex, OpenFileMappingW, WaitForSingleObject, TerminateThread, SetEvent, WaitForMultipleObjects, LoadLibraryW, GetProcAddress, FreeLibrary, GlobalAlloc, GlobalFree, CreateFileMappingW, CreateMutexW, OpenMutexW, CreateEventW, OpenEventW, LocalAlloc, LocalFree, SetLastError, GetCurrentProcess, GetLastError, CloseHandle, lstrcmpW, lstrlenW, GetVersionExW, GetThreadLocale, GetLocaleInfoA, GetACP, InterlockedExchange, GetUserDefaultLCID, GetSystemTimeAsFileTime, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, HeapSetInformation, InterlockedCompareExchange, DecodePointer, WTSGetActiveConsoleSessionId, CreateProcessW, RaiseException, GetModuleHandleW, LoadLibraryA, InitializeCriticalSectionAndSpinCount, EncodePointer
msvcr100.dll
DllMain
msvcr70.dll
DllMain
msvcr80.dll
DllMain
ole32.dll
CoInitializeEx, CoUninitialize, CoSuspendClassObjects, StringFromGUID2, CoCreateInstance, CoResumeClassObjects, CoTaskMemRealloc, CoCreateFreeThreadedMarshaler, CoTaskMemFree, CoTaskMemAlloc, CoInitializeSecurity, CoRevokeClassObject, CoGetCurrentProcess, CoReleaseMarshalData, CreateStreamOnHGlobal, CoUnmarshalInterface, CLSIDFromString, CoInitialize, CoRegisterClassObject, CoMarshalInterface, CoAddRefServerProcess, CoReleaseServerProcess
psapi.dll
EnumProcessModules, GetModuleFileNameExW
shlwapi.dll
PathFileExistsW, PathFindExtensionW
user32.dll
CloseWindowStation, SetProcessWindowStation, PostMessageW, wsprintfW, RegisterDeviceNotificationW, MessageBoxW, MsgWaitForMultipleObjects, IsWindow, RegisterWindowMessageW, CharNextW, LoadStringW, CharUpperW, TranslateMessage, PeekMessageW, PostThreadMessageW, UnregisterDeviceNotification, DispatchMessageW, GetMessageW, GetSystemMetrics, OpenInputDesktop, GetUserObjectInformationW, CloseDesktop, GetProcessWindowStation, OpenWindowStationW, UnregisterClassA
version.dll
GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW
wintrust.dll
WinVerifyTrust

VESMgr.exe

VAIO Event Service by Sony Corporation (Signed)

Remove VESMgr.exe
Version:   4.2.0.11050
MD5:   2c3dbb9b671ab95245ded1efc5276ce9
SHA1:   4d7465e0b67833ab38b01241ae1e3d85df287712
SHA256:   1b5f04819d37eb1ccb1df8daee3b0848f7b45eb415906b2efae3c533a4fd78e5

Overview

vesmgr.exe runs as a service under the name VAIO Event Service with extensive SYSTEM privileges (full administrator access). This is typically installed with the program VAIO Event Service published by Sony Corporation and is usually factory installed by the OEM. The file is digitally signed by Sony Corporation which was issued by the Thawte Consulting (Pty) Ltd. certificate authority (CA).

DetailsDetails

File name:vesmgr.exe
Publisher:Sony Corporation
Product name:VAIO Event Service
Description:VAIO Event Service (Service Module)
Typical file path:C:\Program Files\sony\vaio event service\vesmgr.exe
File version:4.2.0.11050
Size:198.85 KB (203,624 bytes)
Build date:11/5/2008 10:44 AM
Certificate
Issued to:Sony Corporation
Authority (CA):Thawte Consulting (Pty) Ltd.
Expiration date:Tuesday, January 4, 2011
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 10.0
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
Sony Corporation
6% remove
This utility is pre-installed on factory PC and provides an eventing model platform to manage function keys with relation to the volume control as well as interfaces with the VAIO Control Center utility.

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'VAIO Event Service'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00047560%
0.028634%
Kernel CPU:0.00016669%
0.013761%
User CPU:0.00030891%
0.014873%
Kernel CPU time:109 ms/min
100,923,805ms/min
CPU cycles:16,269/sec
17,470,203/sec
Memory
Private memory:10 MB
21.59 MB
Private (maximum):15.49 MB
Private (minimum):2.22 MB
Non-paged memory:10 MB
21.59 MB
Virtual memory:94 MB
140.96 MB
Virtual memory (peak):119 MB
169.69 MB
Working set:6.31 MB
18.61 MB
Working set (peak):15.54 MB
37.95 MB
Page faults:14,145/min
2,039/min
I/O
I/O read transfer:173 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:5 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:27 Bytes/sec
448.09 KB/min
I/O other operations:2/sec
1,671/min
Resource allocations
Threads:15
12
Handles:472
600

BehaviorsProcess properties

Integrety level:System
Platform:64-bit
Command line:"C:\Program Files\sony\vaio event service\vesmgr.exe"
Owner:SYSTEM
Windows Service
Service name:VAIO Event Service
Description:“Proporciona el servicio de gestión de eventos de hardware de VAIO. Durante la finalización de este servicio, algunas funciones, como el botón S, Hotkey y la administración de energía original de VAIO, presentan limitaciones”
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

ResourcesThreads

Averages
 
wow64.dll
Total CPU:0.00035896%
0.272967%
Kernel CPU:0.00012335%
0.107585%
User CPU:0.00023561%
0.165382%
CPU cycles:13,857/sec
5,741,424/sec
Memory:276 KB
1.16 MB
VESMgr.exe (main module)
Total CPU:0.00014292%
Kernel CPU:0.00004764%
User CPU:0.00009528%
CPU cycles:4,466/sec
Memory:208 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 51.56%
Windows Vista Home Premium 20.31%
Windows 7 Home Basic 10.94%
Windows 7 Professional 9.38%
Microsoft Windows XP 4.69%
Windows 7 Ultimate 1.56%
Windows 8 Pro with Media Center 1.56%

Distribution by countryDistribution by country

United States installs about 45.31% of VAIO Event Service.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Sony 96.00%
Dell 4.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE