vssvc.exe
Microsoft Volume Shadow Copy Service by Microsoft
| Version: | 6.0.6001.18000 (longhorn_rtm.080118-1840) | 
| MD5: | d5fb73d19c46ade183f968e13f186b23 | 
| SHA1: | aeed8021501be3825627016f52433b1b546454fa | 
| SHA256: | d35432be4ff462fcea958cf646d5572b6d78058bc2f1f324c9f50a0b14b02259 | 
This is a Windows system installed file with Windows File Protection (WFP) enabled.
What is vssvc.exe?
The Volume Shadow Copy Service provides the backup infrastructure for the Microsoft Windows, as well as a mechanism for creating consistent point-in-time copies of data known as shadow copies. The Volume Shadow Copy Service can produce consistent shadow copies by coordinating with business applications, file-system services, backup applications, fast-recovery solutions, and storage hardware. 
About vssvc.exe (from Microsoft)
“The Volume Shadow Copy Service (VSS) is a set of COM APIs that implements a framework to allow volume backups to be performed while applications on a system continue to write to the volumes. VSS provi”
 Details
Details
| File name: | vssvc.exe | 
| Publisher: | Microsoft Corporation | 
| Product name: | Microsoft® Volume Shadow Copy Service | 
| Description: | Microsoft® Windows® Operating System | 
| Typical file path: | C:\Windows\System32\vssvc.exe | 
| Original name: | VSSVC.EXE.MUI | 
| File version: | 6.0.6001.18000 (longhorn_rtm.080118-1840) | 
| Product version: | 6.0.6001.18000 | 
| Size: | 1.01 MB (1,054,720 bytes) | 
| Digital DNA | 
| PE subsystem: | Windows GUI | 
| Entropy: | 6.003843 | 
| File packed: | No | 
| Code language: | Microsoft Visual C++ | 
| .NET CLR: | No | 
More details
 Behaviors
Behaviors
Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
- 'VSS'  (Kötet árnyékmásolata)
- 'VSS' 
 Resource utilization
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
| CPU | 
| Total CPU: | 0.00318705% |  | 
| Kernel CPU: | 0.00150220% |  | 
| User CPU: | 0.00168485% |  | 
| Kernel CPU time: | 3,806 ms/min |  | 
| CPU cycles: | 242,017/sec |  | 
| Memory | 
| Private memory: | 12.02 MB |  | 
| Private (maximum): | 14.62 MB |  | 
| Private (minimum): | 5.75 MB |  | 
| Non-paged memory: | 12.02 MB |  | 
| Virtual memory: | 72.09 MB |  | 
| Virtual memory (peak): | 74.12 MB |  | 
| Working set: | 5.78 MB |  | 
| Working set (peak): | 17.75 MB |  | 
| Page faults: | 14,815/min |  | 
| I/O | 
| I/O read transfer: | 107 Bytes/sec |  | 
| I/O read operations: | 2/sec |  | 
| I/O write transfer: | 322 Bytes/sec |  | 
| I/O write operations: | 1/sec |  | 
| I/O other transfer: | 3.3 KB/sec |  | 
| I/O other operations: | 95/sec |  | 
| Resource allocations | 
| Threads: | 5 |  | 
| Handles: | 244 |  | 
 
 Process properties
Process properties
| Integrety level: | System | 
| Platform: | 32-bit | 
| Command line: | C:\Windows\System32\vssvc.exe | 
| Owner: | SYSTEM | 
| Windows Service | 
| Service name: | VSS | 
| Display name: | Kötet árnyékmásolata | 
| Description: | “Gere e implementa cópias sombra de volume utilizadas para cópia de segurança, entre outros propósitos. Se este serviço for parado, as cópias sombra não estarão disponíveis para cópia de segurança e esta poderá falhar. Se este serviço estiver desactivado, não será possível iniciar qualquer serviço que dependa explicitamente dele.” | 
| Type: | Win32OwnProcess | 
| Parent process: | services.exe (Services and Controller app by Microsoft) | 
 Threads
Threads
Averages
 
| msvcrt.dll | 
| Total CPU: | 0.00460087% |  | 
| Kernel CPU: | 0.00396024% |  | 
| User CPU: | 0.00064063% |  | 
| CPU cycles: | 102,075/sec |  | 
| Memory: | 680 KB |  | 
| vssvc.exe (main module) | 
| Total CPU: | 0.00011617% |  | 
| Kernel CPU: | 0.00008713% |  | 
| User CPU: | 0.00002904% |  | 
| CPU cycles: | 2,687/sec |  | 
| Memory: | 1.02 MB |  | 
| ADVAPI32.dll | 
| Total CPU: | 0.00008713% |  | 
| Kernel CPU: | 0.00000000% |  | 
| User CPU: | 0.00008713% |  | 
| CPU cycles: | 1,844/sec |  | 
| Memory: | 792 KB |  | 
| RPCRT4.dll | 
| Total CPU: | 0.00003443% |  | 
| Kernel CPU: | 0.00000000% |  | 
| User CPU: | 0.00003443% |  | 
| CPU cycles: | 257/sec |  | 
| Memory: | 776 KB |  | 
 
 Distribution by Windows OS
Distribution by Windows OS
| OS version | distribution | 
| Windows 7 Home Premium | 57.50% |  | 
| Windows 7 Ultimate | 25.50% |  | 
| Windows 7 Professional | 9.00% |  | 
| Windows Vista Home Premium | 4.50% |  | 
| Windows 7 Home Basic | 2.00% |  | 
| Windows 7 Starter | 1.00% |  | 
| Windows Vista Home Basic | 0.50% |  | 
 Distribution by country
Distribution by country
United States installs about 51.76% of Microsoft® Volume Shadow Copy Service.
 Distribution by PC manufacturer
Distribution by PC manufacturer
| PC Manufacturer | distribution | 
| Dell | 25.19% |  | 
| Hewlett-Packard | 20.61% |  | 
| ASUS | 12.98% |  | 
| Toshiba | 12.21% |  | 
| Acer | 10.31% |  | 
| Lenovo | 3.82% |  | 
| Sony | 3.05% |  | 
| GIGABYTE | 3.05% |  | 
| Samsung | 2.29% |  | 
| MSI | 2.29% |  | 
| Gateway | 1.53% |  | 
| Alienware | 0.76% |  | 
| Medion | 0.76% |  | 
| Intel | 0.76% |  | 
| Sahara | 0.38% |  |