有人可以帮我弄清楚WMI在做什么吗?

时间:2014-03-26 20:22:47

标签: wmi-query

这是我通过运行WMI跟踪收到的内容。这是大约60个不同的事件,发生在1秒钟内。因此,每隔60秒,这些事件(有时甚至更多)将在WMI中触发。我的WMI服务使用我所拥有的任何可用CPU来处理它们,将CPU固定在%100。这是踢球者,我关闭了WMI,我遇到了0个CPU问题,我的应用程序工作没有问题...但是,我需要WMI on VM Tools。请让我知道你在想什么。谢谢!

ProviderInfo for GroupOperationId = 258467; Operation = Provider::GetObject - Win32_NetworkAdapterConfiguration.Index=2; ProviderName = CIMWin32; ProviderGuid = {d63a5850-8f16-11cf-9f47-00aa00bf345c}; Path = %systemroot%\system32\wbem\cimwin32.dll
ProviderInfo for GroupOperationId = 258467; Operation = Provider::GetObject - Win32_NetworkAdapter.DeviceID="2"; ProviderName = CIMWin32; ProviderGuid = {d63a5850-8f16-11cf-9f47-00aa00bf345c}; Path = %systemroot%\system32\wbem\cimwin32.dll
ProviderInfo for GroupOperationId = 258467; Operation = Provider::GetObject - Win32_NetworkAdapterConfiguration.Index=1; ProviderName = CIMWin32; ProviderGuid = {d63a5850-8f16-11cf-9f47-00aa00bf345c}; Path = %systemroot%\system32\wbem\cimwin32.dll
ProviderInfo for GroupOperationId = 258467; Operation = Provider::GetObject - Win32_NetworkAdapter.DeviceID="1"; ProviderName = CIMWin32; ProviderGuid = {d63a5850-8f16-11cf-9f47-00aa00bf345c}; Path = %systemroot%\system32\wbem\cimwin32.dll
ProviderInfo for GroupOperationId = 258467; Operation = Provider::GetObject - Win32_NetworkAdapterConfiguration.Index=0; ProviderName = CIMWin32; ProviderGuid = {d63a5850-8f16-11cf-9f47-00aa00bf345c}; Path = %systemroot%\system32\wbem\cimwin32.dll
ProviderInfo for GroupOperationId = 258467; Operation = Provider::GetObject - Win32_NetworkAdapter.DeviceID="0"; ProviderName = CIMWin32; ProviderGuid = {d63a5850-8f16-11cf-9f47-00aa00bf345c}; Path = %systemroot%\system32\wbem\cimwin32.dll
Stop OperationId = 258468
Stop OperationId = 258498
Stop OperationId = 258499
GroupOperationId = 258467; OperationId = 258499; Operation = Start IWbemServices::GetObject - Win32_NetworkAdapterConfiguration; ClientMachine = Local; User = NT AUTHORITY\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
ProviderInfo for GroupOperationId = 258467; Operation = Provider::ExecQuery - select __RELPATH, __RELPATH, Index from Win32_NetworkAdapterConfiguration where Index <> NULL; ProviderName = CIMWin32; ProviderGuid = {d63a5850-8f16-11cf-9f47-00aa00bf345c}; Path = %systemroot%\system32\wbem\cimwin32.dll
GroupOperationId = 258467; OperationId = 258498; Operation = Start IWbemServices::ExecQuery - SELECT __RELPATH, Index FROM Win32_NetworkAdapterConfiguration WHERE Index<>NULL; ClientMachine = Local; User = NT AUTHORITY\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
Stop OperationId = 258493
Stop OperationId = 258495
Stop OperationId = 258497
GroupOperationId = 258494; OperationId = 258497; Operation = Start IWbemServices::GetObject - MSFT_SCMEVENTLOGEVENT; ClientMachine = Local; User = .\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
GroupOperationId = 258467; OperationId = 258496; Operation = Start IWbemServices::GetObject - Win32_NetworkAdapter; ClientMachine = Local; User = NT AUTHORITY\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
Stop OperationId = 258496
GroupOperationId = 258467; OperationId = 258492; Operation = Start IWbemServices::GetObject - Win32_NetworkAdapterSetting; ClientMachine = Local; User = NT AUTHORITY\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
ProviderInfo for GroupOperationId = 258467; Operation = Provider::ExecQuery - select __RELPATH, __RELPATH, Index from Win32_NetworkAdapter where Index <> NULL; ProviderName = CIMWin32; ProviderGuid = {d63a5850-8f16-11cf-9f47-00aa00bf345c}; Path = %systemroot%\system32\wbem\cimwin32.dll
GroupOperationId = 258467; OperationId = 258493; Operation = Start IWbemServices::ExecQuery - SELECT __RELPATH, Index FROM Win32_NetworkAdapter WHERE Index <> NULL; ClientMachine = Local; User = NT AUTHORITY\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
ProviderInfo for GroupOperationId = 258467; Operation = Provider::CreateInstanceEnum - Win32_NetworkAdapterSetting; ProviderName = CIMWin32; ProviderGuid = {d63a5850-8f16-11cf-9f47-00aa00bf345c}; Path = %systemroot%\system32\wbem\cimwin32.dll
Stop OperationId = 258492
GroupOperationId = 258494; OperationId = 258495; Operation = Start IWbemServices::CreateClassEnum - MSFT_SCMEVENTLOGEVENT; ClientMachine = Local; User = .\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
Stop OperationId = 258491
GroupOperationId = 258459; OperationId = 258491; Operation = Start IWbemServices::ExecQuery - references of {__Win32Provider.Name="SCM Event Provider"}; ClientMachine = Local; User = .\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
Stop OperationId = 258490
GroupOperationId = 258459; OperationId = 258490; Operation = Start IWbemServices::ExecQuery - references of {__Win32Provider.Name="SCM Event Provider"}; ClientMachine = Local; User = .\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
Stop OperationId = 258488
GroupOperationId = 258487; OperationId = 258488; Operation = Start IWbemServices::CreateInstanceEnum - __TimerInstruction; ClientMachine = Local; User = .\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
Stop OperationId = 258482
Stop OperationId = 258489
GroupOperationId = 258467; OperationId = 258489; Operation = Start IWbemServices::ExecQuery - references of {__Win32Provider.Name="CIMWin32"}; ClientMachine = Local; User = NT AUTHORITY\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
Stop OperationId = 258486
GroupOperationId = 258486; OperationId = 258486; Operation = IWbemServices::Connect; ClientMachine = ALLE03VMA03; User = NT AUTHORITY\NETWORK SERVICE; ClientProcessId = 19984; NamespaceName = Root
Stop OperationId = 258484
Stop OperationId = 258485
GroupOperationId = 258467; OperationId = 258481; Operation = Start IWbemServices::ExecQuery - references of {__Win32Provider.Name="CIMWin32"}; ClientMachine = Local; User = NT AUTHORITY\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
Stop OperationId = 258480
GroupOperationId = 258483; OperationId = 258485; Operation = Start IWbemServices::ExecQuery - references of {__Win32Provider.Name="WmiPerfClass"}; ClientMachine = Local; User = .\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
GroupOperationId = 258483; OperationId = 258484; Operation = Start IWbemServices::ExecQuery - Select * from __ClassProviderRegistration; ClientMachine = Local; User = .\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
GroupOperationId = 258459; OperationId = 258482; Operation = Start IWbemServices::CreateInstanceEnum - __EventProviderRegistration; ClientMachine = Local; User = .\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
Stop OperationId = 258465
Stop OperationId = 258481
GroupOperationId = 258467; OperationId = 258480; Operation = Start IWbemServices::GetObject - __Win32Provider.Name="CIMWin32"; ClientMachine = Local; User = NT AUTHORITY\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
Stop OperationId = 258473
Stop OperationId = 258477
GroupOperationId = 258478; OperationId = 258479; Operation = Start IWbemServices::CreateInstanceEnum - __TimerInstruction; ClientMachine = Local; User = .\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\subscription
Stop OperationId = 258476
GroupOperationId = 258475; OperationId = 258476; Operation = Start IWbemServices::ExecQuery - Select * from __ClassProviderRegistration; ClientMachine = Local; User = .\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\subscription
GroupOperationId = 258467; OperationId = 258477; Operation = Start IWbemServices::ExecQuery - references of {__Win32Provider.Name="WmiPerfClass"}; ClientMachine = Local; User = NT AUTHORITY\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
Stop OperationId = 258474
Stop OperationId = 258479
GroupOperationId = 258467; OperationId = 258474; Operation = Start IWbemServices::GetObject - __Win32Provider.Name="WmiPerfClass"; ClientMachine = Local; User = NT AUTHORITY\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
GroupOperationId = 258467; OperationId = 258473; Operation = Start IWbemServices::ExecQuery - Select * from __ClassProviderRegistration; ClientMachine = Local; User = NT AUTHORITY\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\CIMV2
Stop OperationId = 258472
GroupOperationId = 258459; OperationId = 258472; Operation = Start IWbemServices::CreateClassEnum - __ArbitratorConfiguration; ClientMachine = Local; User = .\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root
Stop OperationId = 258470
Stop OperationId = 258471
GroupOperationId = 258459; OperationId = 258471; Operation = Start IWbemServices::CreateInstanceEnum - __EventProviderRegistration; ClientMachine = Local; User = .\SYSTEM; ClientProcessId = 0; NamespaceName = \\.\root\subscription
Stop OperationId = 258466

0 个答案:

没有答案