G
Guest
Log Name: Microsoft-Windows-Diagnostics-Performance/Operational
Source: Microsoft-Windows-Diagnostics-Performance
Date: 9/13/2007 5:01:55 PM
Event ID: 401
Task Category: System Performance Monitoring
Level: Error
Keywords: Event Log
User: LOCAL SERVICE
Description:
This process is using up processor time and is impacting the performance of
Windows:
File Name : \Device\HarddiskVolume2\Windows\System32\rundll32.exe
Friendly Name : Windows host process (Rundll32)
Version : 6.0.6000.16386 (vista_rtm.061101-2205)
Thread time : 5383ms
Blocked Time : 1510ms
Incident Time (UTC) : 9/13/2007 9:01:30 PM
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Diagnostics-Performance"
Guid="{cfc18ec0-96b1-4eba-961b-622caee05b0a}" />
<EventID>401</EventID>
<Version>1</Version>
<Level>2</Level>
<Task>4005</Task>
<Opcode>38</Opcode>
<Keywords>0x8000000000010000</Keywords>
<TimeCreated SystemTime="2007-09-13T21:01:55.682Z" />
<EventRecordID>1340</EventRecordID>
<Correlation ActivityID="{00000000-E0C8-0000-C9A2-199C23F6C701}" />
<Execution ProcessID="1580" ThreadID="5308" />
<Channel>Microsoft-Windows-Diagnostics-Performance/Operational</Channel>
<Computer>TWISIR1-PC</Computer>
<Security UserID="S-1-5-19" />
</System>
<EventData>
<Data Name="StartTime">2007-09-13T21:01:30.097Z</Data>
<Data Name="NameLength">54</Data>
<Data
Name="Name">\Device\HarddiskVolume2\Windows\System32\rundll32.exe</Data>
<Data Name="FriendlyNameLength">32</Data>
<Data Name="FriendlyName">Windows host process (Rundll32)</Data>
<Data Name="VersionLength">39</Data>
<Data Name="Version">6.0.6000.16386 (vista_rtm.061101-2205)</Data>
<Data Name="ThreadTime">5383</Data>
<Data Name="BlockedTime">1510</Data>
<Data Name="PercentTime">28.0599220405558</Data>
<Data Name="PathLength">33</Data>
<Data Name="Path">C:\Windows\System32\rundll32.exe</Data>
<Data Name="ProductNameLength">37</Data>
<Data Name="ProductName">Microsoft® Windows® Operating System</Data>
<Data Name="CompanyNameLength">22</Data>
<Data Name="CompanyName">Microsoft Corporation</Data>
</EventData>
</Event>
Source: Microsoft-Windows-Diagnostics-Performance
Date: 9/13/2007 5:01:55 PM
Event ID: 401
Task Category: System Performance Monitoring
Level: Error
Keywords: Event Log
User: LOCAL SERVICE
Description:
This process is using up processor time and is impacting the performance of
Windows:
File Name : \Device\HarddiskVolume2\Windows\System32\rundll32.exe
Friendly Name : Windows host process (Rundll32)
Version : 6.0.6000.16386 (vista_rtm.061101-2205)
Thread time : 5383ms
Blocked Time : 1510ms
Incident Time (UTC) : 9/13/2007 9:01:30 PM
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Diagnostics-Performance"
Guid="{cfc18ec0-96b1-4eba-961b-622caee05b0a}" />
<EventID>401</EventID>
<Version>1</Version>
<Level>2</Level>
<Task>4005</Task>
<Opcode>38</Opcode>
<Keywords>0x8000000000010000</Keywords>
<TimeCreated SystemTime="2007-09-13T21:01:55.682Z" />
<EventRecordID>1340</EventRecordID>
<Correlation ActivityID="{00000000-E0C8-0000-C9A2-199C23F6C701}" />
<Execution ProcessID="1580" ThreadID="5308" />
<Channel>Microsoft-Windows-Diagnostics-Performance/Operational</Channel>
<Computer>TWISIR1-PC</Computer>
<Security UserID="S-1-5-19" />
</System>
<EventData>
<Data Name="StartTime">2007-09-13T21:01:30.097Z</Data>
<Data Name="NameLength">54</Data>
<Data
Name="Name">\Device\HarddiskVolume2\Windows\System32\rundll32.exe</Data>
<Data Name="FriendlyNameLength">32</Data>
<Data Name="FriendlyName">Windows host process (Rundll32)</Data>
<Data Name="VersionLength">39</Data>
<Data Name="Version">6.0.6000.16386 (vista_rtm.061101-2205)</Data>
<Data Name="ThreadTime">5383</Data>
<Data Name="BlockedTime">1510</Data>
<Data Name="PercentTime">28.0599220405558</Data>
<Data Name="PathLength">33</Data>
<Data Name="Path">C:\Windows\System32\rundll32.exe</Data>
<Data Name="ProductNameLength">37</Data>
<Data Name="ProductName">Microsoft® Windows® Operating System</Data>
<Data Name="CompanyNameLength">22</Data>
<Data Name="CompanyName">Microsoft Corporation</Data>
</EventData>
</Event>