vssvc.exe
Microsoft Volume Shadow Copy Service by Microsoft
| Version: | 6.2.9200.16384 (win8_rtm.120725-1247) |
| MD5: | ea658570314042c914964fc72ab50e6b |
| SHA1: | bacaa279b2775899619f5533e134c00ccf56bf0b |
| SHA256: | 0b10e16d5136bf71eaf68f0d9a8b25f92f6d686bf9f80feeb9f291221c6b8284 |
This is a Windows system installed file with Windows File Protection (WFP) enabled.
What is vssvc.exe?
The Volume Shadow Copy Service provides the backup infrastructure for the Microsoft Windows, as well as a mechanism for creating consistent point-in-time copies of data known as shadow copies. The Volume Shadow Copy Service can produce consistent shadow copies by coordinating with business applications, file-system services, backup applications, fast-recovery solutions, and storage hardware.
About vssvc.exe (from Microsoft)
“The Volume Shadow Copy Service (VSS) is a set of COM APIs that implements a framework to allow volume backups to be performed while applications on a system continue to write to the volumes. VSS provi”
Details
| File name: | vssvc.exe |
| Publisher: | Microsoft Corporation |
| Product name: | Microsoft® Volume Shadow Copy Service |
| Description: | Microsoft® Windows® Operating System |
| Typical file path: | C:\Windows\System32\vssvc.exe |
| Original name: | VSSVC.EXE.MUI |
| File version: | 6.2.9200.16384 (win8_rtm.120725-1247) |
| Product version: | 6.2.9200.16384 |
| Size: | 1.41 MB (1,482,752 bytes) |
| Digital DNA |
| PE subsystem: | Windows GUI |
| Entropy: | 6.003843 |
| File packed: | No |
| Code language: | Microsoft Visual C++ |
| .NET CLR: | No |
More details
Behaviors
Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
- 'VSS' (Kötet árnyékmásolata)
- 'VSS'
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
| CPU |
| Total CPU: | 0.00329079% | |
| Kernel CPU: | 0.00148175% | |
| User CPU: | 0.00180905% | |
| Kernel CPU time: | 3,105 ms/min | |
| CPU cycles: | 1,363,657/sec | |
| Context switches: | 3/sec | |
| Memory |
| Private memory: | 3.15 MB | |
| Private (maximum): | 7.72 MB | |
| Private (minimum): | 6.88 MB | |
| Non-paged memory: | 3.15 MB | |
| Virtual memory: | 50.02 MB | |
| Virtual memory (peak): | 57.9 MB | |
| Working set: | 7.44 MB | |
| Working set (peak): | 12.16 MB | |
| Page faults: | 13,189/min | |
| I/O |
| I/O read transfer: | 704 Bytes/sec | |
| I/O read operations: | 3/sec | |
| I/O write transfer: | 342 Bytes/sec | |
| I/O write operations: | 1/sec | |
| I/O other transfer: | 4.61 KB/sec | |
| I/O other operations: | 104/sec | |
| Resource allocations |
| Threads: | 5 | |
| Handles: | 358 | |
Process properties
| Integrety level: | System |
| Platform: | 64-bit |
| Command line: | C:\Windows\System32\vssvc.exe |
| Owner: | SYSTEM |
| Windows Service |
| Service name: | VSS |
| Display name: | Kötet árnyékmásolata |
| Description: | “Gere e implementa cópias sombra de volume utilizadas para cópia de segurança, entre outros propósitos. Se este serviço for parado, as cópias sombra não estarão disponíveis para cópia de segurança e esta poderá falhar. Se este serviço estiver desactivado, não será possível iniciar qualquer serviço que dependa explicitamente dele.” |
| Type: | Win32OwnProcess |
| Parent process: | services.exe (by Microsoft) |
Threads
Averages
| msvcrt.dll (Windows NT CRT DLL by Microsoft) |
| Total CPU: | 0.01902715% | |
| Kernel CPU: | 0.01671770% | |
| User CPU: | 0.00230945% | |
| CPU cycles: | 236,701/sec | |
| Memory: | 660 KB | |
| ntdll.dll |
| Total CPU: | 0.01401729% | |
| Kernel CPU: | 0.00693623% | |
| User CPU: | 0.00708105% | |
| CPU cycles: | 334,389/sec | |
| Context switches: | 1/sec | |
| Memory: | 1.74 MB | |
| vssvc.exe (main module) |
| Total CPU: | 0.00163375% | |
| Kernel CPU: | 0.00157316% | |
| User CPU: | 0.00006059% | |
| CPU cycles: | 26,088/sec | |
| Memory: | 1.43 MB | |
| sechost.dll |
| Total CPU: | 0.00138204% | |
| Kernel CPU: | 0.00041447% | |
| User CPU: | 0.00096757% | |
| CPU cycles: | 19,644/sec | |
| Memory: | 288 KB | |
| combase.dll |
| Total CPU: | 0.00007160% | |
| Kernel CPU: | 0.00003580% | |
| User CPU: | 0.00003580% | |
| CPU cycles: | 1,318/sec | |
| Memory: | 1.69 MB | |
Distribution by Windows OS
| OS version | distribution |
| Windows 7 Home Premium |
57.50% |
|
| Windows 7 Ultimate |
25.50% |
|
| Windows 7 Professional |
9.00% |
|
| Windows Vista Home Premium |
4.50% |
|
| Windows 7 Home Basic |
2.00% |
|
| Windows 7 Starter |
1.00% |
|
| Windows Vista Home Basic |
0.50% |
|
Distribution by country
United States installs about 51.76% of Microsoft® Volume Shadow Copy Service.
Distribution by PC manufacturer
| PC Manufacturer | distribution |
| Dell |
25.19% |
|
| Hewlett-Packard |
20.61% |
|
| ASUS |
12.98% |
|
| Toshiba |
12.21% |
|
| Acer |
10.31% |
|
| Lenovo |
3.82% |
|
| Sony |
3.05% |
|
| GIGABYTE |
3.05% |
|
| Samsung |
2.29% |
|
| MSI |
2.29% |
|
| Gateway |
1.53% |
|
| Alienware |
0.76% |
|
| Medion |
0.76% |
|
| Intel |
0.76% |
|
| Sahara |
0.38% |
|