Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

5.5.0.01140 40.48%
5.3.0.05260 14.29%
5.2.0.12160 2.38%
5.0.0.04270 14.29%
2.3.00.03190 28.57%

Relationships

Parent process
Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryInfoKeyW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW, EqualSid, GetSecurityDescriptorDacl, AllocateAndInitializeSid, GetLengthSid, InitializeAcl, AddAccessDeniedAce, AddAccessAllowedAce, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, FreeSid, OpenProcessToken, GetTokenInformation, RegOpenKeyExW, RegSetValueExW, RegEnumKeyExW, RegQueryValueExW, RegCreateKeyExW
imm32.dll
ImmDisableIME
kernel32.dll
ReleaseMutex, ResetEvent, lstrcpyW, CreateThread, Sleep, EnterCriticalSection, LeaveCriticalSection, InitializeCriticalSection, DeleteCriticalSection, lstrcmpiW, lstrcatW, GetModuleFileNameW, lstrcpynW, GetCurrentThreadId, InterlockedIncrement, InterlockedDecrement, MultiByteToWideChar, WaitForSingleObject, SetEvent, FindResourceW, LoadLibraryExW, GetCommandLineW, LockResource, FindResourceExW, GetPrivateProfileIntW, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, GetStartupInfoW, GetModuleHandleA, ExitProcess, GetProcessHeap, HeapSize, HeapReAlloc, HeapFree, HeapAlloc, HeapDestroy, GetVersionExA, SizeofResource, TerminateThread, WaitForMultipleObjects, lstrlenW, LoadLibraryW, InterlockedExchange, GetProcAddress, FreeLibrary, GlobalAlloc, GlobalFree, CreateMutexW, OpenMutexW, CreateEventW, OpenEventW, LocalAlloc, LocalFree, GetCurrentProcess, GetLastError, CloseHandle, GetVersionExW, GetThreadLocale, GetLocaleInfoA, GetACP, LoadResource, GetSystemTimeAsFileTime, WTSGetActiveConsoleSessionId, FlushInstructionCache, ProcessIdToSessionId, GetModuleHandleW, IsDebuggerPresent, InitializeCriticalSectionAndSpinCount, TerminateProcess, HeapSetInformation, DecodePointer, EncodePointer, InterlockedPopEntrySList, VirtualAlloc, VirtualFree, IsProcessorFeaturePresent, InterlockedPushEntrySList, InterlockedCompareExchange, RaiseException, UnhandledExceptionFilter, SetLastError, GetThreadPreferredUILanguages, SetUnhandledExceptionFilter
msvcp100.dll
DllMain
msvcr100.dll
DllMain
msvcr70.dll
DllMain
ole32.dll
CoInitializeEx, CoUninitialize, CoSuspendClassObjects, CoRevokeClassObject, CoRegisterClassObject, CoTaskMemAlloc, CoTaskMemFree, StringFromGUID2, CoCreateInstance, CoResumeClassObjects, CLSIDFromString, CoTaskMemRealloc, OleRun, CoInitializeSecurity, CoAddRefServerProcess, CoReleaseServerProcess
shlwapi.dll
PathFileExistsW, PathFindExtensionW
user32.dll
wsprintfW, PostMessageW, IsWindow, RegisterWindowMessageW, CharNextW, PostThreadMessageW, TranslateMessage, DispatchMessageW, GetMessageW, CharUpperW, CloseWindowStation, SetProcessWindowStation, MsgWaitForMultipleObjects, CloseDesktop, GetUserObjectInformationW, OpenInputDesktop, GetSystemMetrics, PeekMessageW, GetProcessWindowStation, OpenWindowStationW, UnregisterClassA, SetWindowLongW, GetClassInfoExW, LoadCursorW, DestroyWindow, RegisterClassExW, DefWindowProcW, CallWindowProcW, GetWindowLongW, CreateWindowExW
wtsapi32.dll
WTSQueryUserToken, WTSQuerySessionInformationW, WTSFreeMemory, WTSRegisterSessionNotification, WTSUnRegisterSessionNotification

VESMgrSub.exe

VAIO Event Service by Sony Corporation (Signed)

Remove VESMgrSub.exe
Version:   2.3.00.03190
MD5:   b0c84cea4fe07231ba87a054af95984d
SHA1:   4f30bbe0ff1c2ef252fd7858551162bbdf387642
SHA256:   8a50b7380f4b73826193722ae1b734c5be9b9b63f94d7d081bc18591e4b1aa64

Overview

vesmgrsub.exe executes as a process under the SYSTEM account with extensive privileges (the system and the administrator accounts have the same file privileges) typically within the context of its parent vesmgr.exe (VAIO Event Service by Sony Corporation). It is installed with a couple of know programs including VAIO Event Service published by Sony Corporation, VAIO Event Service from Sony Corporation and VAIO Event Service by Sony Corporation. The file is digitally signed by Sony Corporation which was issued by the Thawte Consulting (Pty) Ltd. certificate authority (CA).

DetailsDetails

File name:vesmgrsub.exe
Publisher:Sony Corporation
Product name:VAIO Event Service
Description:VAIO Event Service (Service Sub Module)
Typical file path:C:\Program Files\sony\vaio event service\vesmgrsub.exe
File version:2.3.00.03190
Product version:2.3.00
Size:98.12 KB (100,472 bytes)
Certificate
Issued to:Sony Corporation
Authority (CA):Thawte Consulting (Pty) Ltd.
Expiration date:Tuesday, January 4, 2011
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 10.0
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Sony Corporation
6% remove
This utility is pre-installed on factory PC and provides an eventing model platform to manage function keys with relation to the volume control as well as interfaces with the VAIO Control Center utility.

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00129883%
0.028634%
Kernel CPU:0.00062617%
0.013761%
User CPU:0.00067266%
0.014873%
Kernel CPU time:11,602,746 ms/min
100,923,805ms/min
CPU cycles:330,104/sec
17,470,203/sec
Context switches:14/sec
284/sec
Memory
Private memory:7.9 MB
21.59 MB
Private (maximum):8.79 MB
Private (minimum):4.82 MB
Non-paged memory:7.9 MB
21.59 MB
Virtual memory:91.57 MB
140.96 MB
Virtual memory (peak):97.62 MB
169.69 MB
Working set:5.88 MB
18.61 MB
Working set (peak):10 MB
37.95 MB
Page faults:7,079/min
2,039/min
I/O
I/O read transfer:185 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:10 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:238 Bytes/sec
448.09 KB/min
I/O other operations:9/sec
1,671/min
Resource allocations
Threads:15
12
Handles:224
600
GUI GDI count:60
103
GUI GDI peak:4
142
GUI USER count:30
49
GUI USER peak:3
71

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command line:"C:\Program Files\sony\vaio event service\vesmgrsub.exe"
Owner:SYSTEM
Parent process:vesmgr.exe (VAIO Event Service by Sony Corporation)

ResourcesThreads

Averages
 
VESMgrSub.exe (main module)
Total CPU:0.01178088%
0.272967%
Kernel CPU:0.00911086%
0.107585%
User CPU:0.00267002%
0.165382%
CPU cycles:391,554/sec
5,741,424/sec
Memory:92 KB
1.16 MB
ntdll.dll
Total CPU:0.00380930%
Kernel CPU:0.00357122%
User CPU:0.00023808%
CPU cycles:77,156/sec
Memory:1.52 MB
MSVCR80.dll
Total CPU:0.00169884%
Kernel CPU:0.00139270%
User CPU:0.00030613%
CPU cycles:33,835/sec
Context switches:1/sec
Memory:620 KB
MSVCR70.dll
Total CPU:0.00004919%
Kernel CPU:0.00004109%
User CPU:0.00000810%
CPU cycles:912/sec
Memory:336 KB
WINMM.dll
Total CPU:0.00002526%
Kernel CPU:0.00002526%
User CPU:0.00000000%
CPU cycles:127/sec
Memory:200 KB
gdiplus.dll
Total CPU:0.00001217%
Kernel CPU:0.00000811%
User CPU:0.00000406%
CPU cycles:52/sec
Memory:1.67 MB
MMDevApi.dll
Total CPU:0.00001050%
Kernel CPU:0.00001050%
User CPU:0.00000000%
CPU cycles:278/sec
Memory:160 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 50.00%
Windows Vista Home Premium 23.81%
Windows 7 Home Basic 16.67%
Windows 7 Professional 7.14%
Microsoft Windows XP 2.38%

Distribution by countryDistribution by country

United States installs about 47.62% of VAIO Event Service.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Sony 96.67%
Dell 3.33%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE