Export: CSV
 Start Date End Date Type  File Path Process Username Logon ID PID Creator PID Duration  Command Line 
 Thu 9/9/2010 6:52:59 AM    still running     DC   C:\WINDOWS\system32\wbem  Lookup Process wmiprvse.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  3608  596  [] still running  
 Thu 9/9/2010 6:12:36 AM    still running     DC   C:\WINDOWS\system32\wbem  Lookup Process wmiprvse.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  2964  596  [] still running  
 Thu 9/9/2010 6:12:35 AM    still running     DC   C:\ESAutomateDemo  Lookup Process PerlService.exe  WEBDEMO\Robert.Kingsley  0x0,0x21A62  2904  2760  [] still running  
 Thu 9/9/2010 6:12:35 AM    still running     DC   C:\WINDOWS\system32  Lookup Process ctfmon.exe  WEBDEMO\Robert.Kingsley  0x0,0x21A62  2892  2760  [] still running  
 Thu 9/9/2010 6:12:35 AM    still running     DC   C:\Program Files\Virtual Machine Additions  Lookup Process vmusrvc.exe  WEBDEMO\Robert.Kingsley  0x0,0x21A62  2876  2760  [] still running  
 Thu 9/9/2010 6:12:32 AM    still running     DC   C:\WINDOWS  Lookup Process explorer.exe  WEBDEMO\Robert.Kingsley  0x0,0x21A62  2760  2736  [] still running  
 Thu 9/9/2010 6:12:20 AM    still running     DC   C:\WINDOWS\system32  Lookup Process svchost.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  2364  388  [] still running  
 Thu 9/9/2010 6:11:58 AM    still running     DC   C:\WINDOWS\system32  Lookup Process svchost.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  1816  388  [] still running  
 Thu 9/9/2010 6:11:58 AM    still running     DC   C:\WINDOWS\system32  Lookup Process tcpsvcs.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  1780  388  [] still running  
 Thu 9/9/2010 6:11:57 AM    still running     DC   C:\WINDOWS\system32  Lookup Process ntfrs.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  1592  388  [] still running  
 Thu 9/9/2010 6:11:57 AM    still running     DC   C:\WINDOWS\system32  Lookup Process ismserv.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  1576  388  [] still running  
 Thu 9/9/2010 6:11:57 AM    still running     DC   C:\WINDOWS\system32\inetsrv  Lookup Process inetinfo.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  1540  388  [] still running  
 Thu 9/9/2010 6:11:56 AM    still running     DC   C:\WINDOWS\system32  Lookup Process eventsentry_hb_svc.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  1480  388  [] still running  
 Thu 9/9/2010 6:11:46 AM    still running     DC   C:\WINDOWS\system32  Lookup Process eventsentry_svc.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  1380  388  [] still running  
 Thu 9/9/2010 6:11:46 AM    still running     DC   C:\WINDOWS\system32  Lookup Process svchost.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  1364  388  [] still running  
 Thu 9/9/2010 6:11:46 AM    still running     DC   C:\WINDOWS\system32  Lookup Process dns.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  1308  388  [] still running  
 Thu 9/9/2010 6:11:46 AM    still running     DC   C:\WINDOWS\system32  Lookup Process dfssvc.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  1252  388  [] still running  
 Thu 9/9/2010 6:11:46 AM    still running     DC   C:\Program Files\Virtual Machine Additions  Lookup Process vmsrvc.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  1220  388  [] still running  
 Thu 9/9/2010 6:11:44 AM    still running     DC   C:\WINDOWS\system32  Lookup Process spoolsv.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  1132  388  [] still running  
 Thu 9/9/2010 6:11:44 AM    still running     DC   C:\WINDOWS\system32  Lookup Process msdtc.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  1156  388  [] still running  
 Thu 9/9/2010 6:11:16 AM    still running     DC   C:\WINDOWS\system32  Lookup Process svchost.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  848  388  [] still running  
 Thu 9/9/2010 6:11:16 AM    still running     DC   C:\WINDOWS\system32  Lookup Process svchost.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  820  388  [] still running  
 Thu 9/9/2010 6:11:16 AM    still running     DC   C:\WINDOWS\system32  Lookup Process svchost.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  796  388  [] still running  
 Thu 9/9/2010 6:11:16 AM    still running     DC   C:\WINDOWS\system32  Lookup Process svchost.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  740  388  [] still running  
 Thu 9/9/2010 6:11:10 AM    still running     DC   C:\WINDOWS\system32  Lookup Process svchost.exe  WEBDEMO\DC1-W2K3$  0x0,0x3E7  596  388  [] still running  

Found 25 record(s) in 1 second(s).

Page generated on 9/9/2010 8:16:42 AM by EventSentry