ReadFile the pipe for req_info
Total bytes read for req_info=20
req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3
Reading new request format from the pipe
calling ReadFile...
Total bytes read by ReadFile=18528
pRequest->sprvm_rexec_info.sprvm_info_versio = 3
pRequest->sprvm_rexec_req_msg_cmd = sprvmGetInfo
pRequest->sprvm_rexec_req_msg_num_args = 0
pRequest->sprvm_rexec_req_msg_arg =
pRequest->sprvm_rexec_req_msg_num_envs = 0
08/23/18 16:33:01
Received a request from client sprvmGetInfo
writing <
>
ExeStat 0, Category 0
After call to WriteFile. totalWritten=18768, cbWritten=18768
Failure in WriteFile [234]
有更多数据可用。
ReadFile the pipe for req_info
Total bytes read for req_info=20
req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3
Reading new request format from the pipe
calling ReadFile...
Total bytes read by ReadFile=26724
pRequest->sprvm_rexec_info.sprvm_info_versio = 3
pRequest->sprvm_rexec_req_msg_cmd = C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
pRequest->sprvm_rexec_req_msg_num_args = 2
pRequest->sprvm_rexec_req_msg_arg = -getspaceavail
pRequest->sprvm_rexec_req_msg_arg[0] = -getspaceavail
pRequest->sprvm_rexec_req_msg_arg[1] = C:\Users\ADMINI~1\AppData\Local\Temp\
pRequest->sprvm_rexec_req_msg_num_envs = 0
08/23/18 16:33:01
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
args[0] = -getspaceavail
args[1] = C:\Users\ADMINI~1\AppData\Local\Temp\
---Started new thread---
08/23/18 16:33:01
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
Exe: exectask.exe, Path: C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\
args[0] = -getspaceavail
args[1] = C:\Users\ADMINI~1\AppData\Local\Temp\
About to call spawn with cmd [C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe]
writing <
1412316282880Exectask:getspaceavail success0
>
ExeStat 0, Category 0
After call to WriteFile. totalWritten=67920, cbWritten=67920
ReadFile the pipe for req_info
Total bytes read for req_info=20
req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3
Reading new request format from the pipe
calling ReadFile...
Total bytes read by ReadFile=18528
pRequest->sprvm_rexec_info.sprvm_info_versio = 3
pRequest->sprvm_rexec_req_msg_cmd = sprvmGetInfo
pRequest->sprvm_rexec_req_msg_num_args = 0
pRequest->sprvm_rexec_req_msg_arg =
pRequest->sprvm_rexec_req_msg_num_envs = 0
08/23/18 16:42:11
Received a request from client sprvmGetInfo
writing <
>
ExeStat 0, Category 0
After call to WriteFile. totalWritten=18768, cbWritten=18768
Failure in WriteFile [234]
有更多数据可用。
ReadFile the pipe for req_info
Total bytes read for req_info=20
req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3
Reading new request format from the pipe
calling ReadFile...
Total bytes read by ReadFile=26724
pRequest->sprvm_rexec_info.sprvm_info_versio = 3
pRequest->sprvm_rexec_req_msg_cmd = C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
pRequest->sprvm_rexec_req_msg_num_args = 2
pRequest->sprvm_rexec_req_msg_arg = -getspaceavail
pRequest->sprvm_rexec_req_msg_arg[0] = -getspaceavail
pRequest->sprvm_rexec_req_msg_arg[1] = C:\Users\ADMINI~1\AppData\Local\Temp\
pRequest->sprvm_rexec_req_msg_num_envs = 0
08/23/18 16:42:11
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
args[0] = -getspaceavail
args[1] = C:\Users\ADMINI~1\AppData\Local\Temp\
---Started new thread---
08/23/18 16:42:11
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
Exe: exectask.exe, Path: C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\
args[0] = -getspaceavail
args[1] = C:\Users\ADMINI~1\AppData\Local\Temp\
About to call spawn with cmd [C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe]
writing <
1411174522880Exectask:getspaceavail success0
>
ExeStat 0, Category 0
After call to WriteFile. totalWritten=67920, cbWritten=67920
ReadFile the pipe for req_info
Total bytes read for req_info=20
req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3
Reading new request format from the pipe
calling ReadFile...
Total bytes read by ReadFile=26724
pRequest->sprvm_rexec_info.sprvm_info_versio = 3
pRequest->sprvm_rexec_req_msg_cmd = C:\Windows\system32\acfsutil.exe
pRequest->sprvm_rexec_req_msg_num_args = 1
pRequest->sprvm_rexec_req_msg_arg = version
pRequest->sprvm_rexec_req_msg_arg[0] = version
pRequest->sprvm_rexec_req_msg_num_envs = 0
08/23/18 16:48:40
Received a request from client C:\Windows\system32\acfsutil.exe
args[0] = version
---Started new thread---
08/23/18 16:48:40
Received a request from client C:\Windows\system32\acfsutil.exe
Exe: acfsutil.exe, Path: C:\Windows\system32\
args[0] = version
About to call spawn with cmd [C:\Windows\system32\acfsutil.exe]
Could not spawn process cmd [C:\Windows\system32\acfsutil.exe] sprvmps error [9]
writing <
>
ExeStat 1, Category 235
After call to WriteFile. totalWritten=67920, cbWritten=67920
ReadFile the pipe for req_info
Total bytes read for req_info=20
req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3
Reading new request format from the pipe
calling ReadFile...
Total bytes read by ReadFile=26724
pRequest->sprvm_rexec_info.sprvm_info_versio = 3
pRequest->sprvm_rexec_req_msg_cmd = C:\Windows\system32\acfsutil.exe
pRequest->sprvm_rexec_req_msg_num_args = 1
pRequest->sprvm_rexec_req_msg_arg = version
pRequest->sprvm_rexec_req_msg_arg[0] = version
pRequest->sprvm_rexec_req_msg_num_envs = 0
08/23/18 16:50:57
Received a request from client C:\Windows\system32\acfsutil.exe
args[0] = version
---Started new thread---
08/23/18 16:50:57
Received a request from client C:\Windows\system32\acfsutil.exe
Exe: acfsutil.exe, Path: C:\Windows\system32\
args[0] = version
About to call spawn with cmd [C:\Windows\system32\acfsutil.exe]
Could not spawn process cmd [C:\Windows\system32\acfsutil.exe] sprvmps error [9]
writing <
>
ExeStat 1, Category 235
After call to WriteFile. totalWritten=67920, cbWritten=67920
ReadFile the pipe for req_info
Total bytes read for req_info=20
req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3
Reading new request format from the pipe
calling ReadFile...
Total bytes read by ReadFile=26724
pRequest->sprvm_rexec_info.sprvm_info_versio = 3
pRequest->sprvm_rexec_req_msg_cmd = C:\Windows\system32\acfsutil.exe
pRequest->sprvm_rexec_req_msg_num_args = 1
pRequest->sprvm_rexec_req_msg_arg = version
pRequest->sprvm_rexec_req_msg_arg[0] = version
pRequest->sprvm_rexec_req_msg_num_envs = 0
08/23/18 16:50:57
Received a request from client C:\Windows\system32\acfsutil.exe
args[0] = version
---Started new thread---
08/23/18 16:50:57
Received a request from client C:\Windows\system32\acfsutil.exe
Exe: acfsutil.exe, Path: C:\Windows\system32\
args[0] = version
About to call spawn with cmd [C:\Windows\system32\acfsutil.exe]
Could not spawn process cmd [C:\Windows\system32\acfsutil.exe] sprvmps error [9]
writing <
>
ExeStat 1, Category 235
After call to WriteFile. totalWritten=67920, cbWritten=67920
ReadFile the pipe for req_info
Total bytes read for req_info=20
req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3
Reading new request format from the pipe
calling ReadFile...
Total bytes read by ReadFile=26724
pRequest->sprvm_rexec_info.sprvm_info_versio = 3
pRequest->sprvm_rexec_req_msg_cmd = C:\Windows\system32\acfsutil.exe
pRequest->sprvm_rexec_req_msg_num_args = 1
pRequest->sprvm_rexec_req_msg_arg = version
pRequest->sprvm_rexec_req_msg_arg[0] = version
pRequest->sprvm_rexec_req_msg_num_envs = 0
08/23/18 16:55:57
Received a request from client C:\Windows\system32\acfsutil.exe
args[0] = version
---Started new thread---
08/23/18 16:55:57
Received a request from client C:\Windows\system32\acfsutil.exe
Exe: acfsutil.exe, Path: C:\Windows\system32\
args[0] = version
About to call spawn with cmd [C:\Windows\system32\acfsutil.exe]
Could not spawn process cmd [C:\Windows\system32\acfsutil.exe] sprvmps error [9]
writing <
>
ExeStat 1, Category 235
After call to WriteFile. totalWritten=67920, cbWritten=67920
ReadFile the pipe for req_info
Total bytes read for req_info=20
req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3
Reading new request format from the pipe
calling ReadFile...
Total bytes read by ReadFile=26724
pRequest->sprvm_rexec_info.sprvm_info_versio = 3
pRequest->sprvm_rexec_req_msg_cmd = C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
pRequest->sprvm_rexec_req_msg_num_args = 1
pRequest->sprvm_rexec_req_msg_arg = -getver
pRequest->sprvm_rexec_req_msg_arg[0] = -getver
pRequest->sprvm_rexec_req_msg_num_envs = 0
08/23/18 17:00:42
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
args[0] = -getver
---Started new thread---
08/23/18 17:00:42
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
Exe: exectask.exe, Path: C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\
args[0] = -getver
About to call spawn with cmd [C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe]
writing <
011.2.0.1.0.03_25_100
>
ExeStat 0, Category 0
After call to WriteFile. totalWritten=67920, cbWritten=67920
ReadFile the pipe for req_info
Total bytes read for req_info=20
req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3
Reading new request format from the pipe
calling ReadFile...
Total bytes read by ReadFile=26724
pRequest->sprvm_rexec_info.sprvm_info_versio = 3
pRequest->sprvm_rexec_req_msg_cmd = C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
pRequest->sprvm_rexec_req_msg_num_args = 2
pRequest->sprvm_rexec_req_msg_arg = -getspaceavail
pRequest->sprvm_rexec_req_msg_arg[0] = -getspaceavail
pRequest->sprvm_rexec_req_msg_arg[1] = C:\Users\ADMINI~1\AppData\Local\Temp
pRequest->sprvm_rexec_req_msg_num_envs = 0
08/23/18 17:00:43
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
args[0] = -getspaceavail
args[1] = C:\Users\ADMINI~1\AppData\Local\Temp
---Started new thread---
08/23/18 17:00:43
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
Exe: exectask.exe, Path: C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\
args[0] = -getspaceavail
args[1] = C:\Users\ADMINI~1\AppData\Local\Temp
About to call spawn with cmd [C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe]
writing <
1411174400000Exectask:getspaceavail success0
>
ExeStat 0, Category 0
After call to WriteFile. totalWritten=67920, cbWritten=67920
ReadFile the pipe for req_info
Total bytes read for req_info=20
req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3
Reading new request format from the pipe
calling ReadFile...
Total bytes read by ReadFile=26724
pRequest->sprvm_rexec_info.sprvm_info_versio = 3
pRequest->sprvm_rexec_req_msg_cmd = C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
pRequest->sprvm_rexec_req_msg_num_args = 1
pRequest->sprvm_rexec_req_msg_arg = -getmemory
pRequest->sprvm_rexec_req_msg_arg[0] = -getmemory
pRequest->sprvm_rexec_req_msg_num_envs = 0
08/23/18 17:00:44
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
args[0] = -getmemory
---Started new thread---
08/23/18 17:00:44
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
Exe: exectask.exe, Path: C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\
args[0] = -getmemory
About to call spawn with cmd [C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe]
writing <
685916815360Exectask: Memory size retrieval was successful0
>
ExeStat 0, Category 0
After call to WriteFile. totalWritten=67920, cbWritten=67920
ReadFile the pipe for req_info
Total bytes read for req_info=20
req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3
Reading new request format from the pipe
calling ReadFile...
Total bytes read by ReadFile=26724
pRequest->sprvm_rexec_info.sprvm_info_versio = 3
pRequest->sprvm_rexec_req_msg_cmd = C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
pRequest->sprvm_rexec_req_msg_num_args = 1
pRequest->sprvm_rexec_req_msg_arg = -getavailmemory
pRequest->sprvm_rexec_req_msg_arg[0] = -getavailmemory
pRequest->sprvm_rexec_req_msg_num_envs = 0
08/23/18 17:00:45
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
args[0] = -getavailmemory
---Started new thread---
08/23/18 17:00:45
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
Exe: exectask.exe, Path: C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\
args[0] = -getavailmemory
About to call spawn with cmd [C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe]
writing <
646986792960Exectask: Available memory size retrieval was successful0
>
ExeStat 0, Category 0
After call to WriteFile. totalWritten=67920, cbWritten=67920
ReadFile the pipe for req_info
Total bytes read for req_info=20
req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3
Reading new request format from the pipe
calling ReadFile...
Total bytes read by ReadFile=26724
pRequest->sprvm_rexec_info.sprvm_info_versio = 3
pRequest->sprvm_rexec_req_msg_cmd = C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
pRequest->sprvm_rexec_req_msg_num_args = 1
pRequest->sprvm_rexec_req_msg_arg = -getswapspace
pRequest->sprvm_rexec_req_msg_arg[0] = -getswapspace
pRequest->sprvm_rexec_req_msg_num_envs = 0
08/23/18 17:00:46
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
args[0] = -getswapspace
---Started new thread---
08/23/18 17:00:46
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
Exe: exectask.exe, Path: C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\
args[0] = -getswapspace
About to call spawn with cmd [C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe]
writing <
078792228864Exectask: Swap space retrieval was successful0
>
ExeStat 0, Category 0
After call to WriteFile. totalWritten=67920, cbWritten=67920
ReadFile the pipe for req_info
Total bytes read for req_info=20
req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3
Reading new request format from the pipe
calling ReadFile...
Total bytes read by ReadFile=26724
pRequest->sprvm_rexec_info.sprvm_info_versio = 3
pRequest->sprvm_rexec_req_msg_cmd = C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
pRequest->sprvm_rexec_req_msg_num_args = 2
pRequest->sprvm_rexec_req_msg_arg = -getmemory
pRequest->sprvm_rexec_req_msg_arg[0] = -getmemory
pRequest->sprvm_rexec_req_msg_arg[1] = -forswap
pRequest->sprvm_rexec_req_msg_num_envs = 0
08/23/18 17:00:47
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
args[0] = -getmemory
args[1] = -forswap
---Started new thread---
08/23/18 17:00:47
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
Exe: exectask.exe, Path: C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\
args[0] = -getmemory
args[1] = -forswap
About to call spawn with cmd [C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe]
writing <
685916815360Exectask: Memory size retrieval was successful0
>
ExeStat 0, Category 0
After call to WriteFile. totalWritten=67920, cbWritten=67920
ReadFile the pipe for req_info
Total bytes read for req_info=20
req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3
Reading new request format from the pipe
calling ReadFile...
Total bytes read by ReadFile=26724
pRequest->sprvm_rexec_info.sprvm_info_versio = 3
pRequest->sprvm_rexec_req_msg_cmd = C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
pRequest->sprvm_rexec_req_msg_num_args = 1
pRequest->sprvm_rexec_req_msg_arg = -getarchitecture
pRequest->sprvm_rexec_req_msg_arg[0] = -getarchitecture
pRequest->sprvm_rexec_req_msg_num_envs = 0
08/23/18 17:00:48
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
args[0] = -getarchitecture
---Started new thread---
08/23/18 17:00:48
Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe
Exe: exectask.exe, Path: C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\
args[0] = -getarchitecture
About to call spawn with cmd [C:\Users\ADMINI~1\AppData\Local\Temp\CVU_11.2.0.1.0_Administrator\exectask.exe]
writing <
064-bitExectask: Architecture retrieval was successful0
>
ExeStat 0, Category 0
After call to WriteFile. totalWritten=67920, cbWritten=67920