DriversRecommendedOutdated drivers can make a good PC feel brokenScan driver issues before chasing fixes manually.Scan NowOctober DealsAmazon USOctober deal check: compare before you payAmazon US: current deals, useful picks and tech finds.Check DealsClean PCRecommendedOne scan can reveal what keeps slowing WindowsLook for cleanup and repair opportunities.Run Scan×
Skip to content
CcmExec

SCCM SMS Agent Host Service Not Running on Windows Server 2012 R2: Diagnosis and Fixes

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

SMS Agent Host is the Configuration Manager client service. Its service name is CcmExec and its process is CcmExec.exe. On Windows Server 2012 R2, first determine whether the service is merely stopped, starts and crashes, is missing, or is running while the client cannot communicate. Do not rebuild WMI or delete the CCM folders before collecting logs and checking the service, dependencies, policy, and security software.

A stopped client cannot reliably receive policy, process deployments, inventory the computer, or communicate with its management point. Microsoft’s health checks expect the service to exist, use Automatic startup, and remain running (Microsoft client-health checks).

First identify the Configuration Manager role

“Server 2012 R2” identifies the operating system, not the Configuration Manager role. A member server used as an ordinary client has a local-management problem when CcmExec stops. A management point or another site system can affect many clients, so do not treat it as a routine workstation-client repair.

Check the console for the device or site-system role and query the local client namespace:

What’s actually slowing this PC down?

Pick the symptom - the matching free tool is one click away.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
Get-WmiObject -Namespace rootccm -Class SMS_Client -ErrorAction SilentlyContinue

On a management point, also investigate management-point HTTP errors, IIS, certificates, and site-system logs before uninstalling the client.

Determine what “not running” means

  • Service exists and is stopped: investigate startup type, dependencies, policy, crashes, and transient WMI failures.
  • It starts manually but stops later: check Application Error events, WMI providers, resource exhaustion, endpoint protection, GPO, scheduled remediation, and recent client or operating-system changes.
  • Service is missing: the installation may be incomplete, rolled back, partially removed, or quarantined. Review setup logs and reinstall when confirmed.
  • Status is Running but Configuration Manager fails: inspect client and communication logs; a running process can be hung or unable to use WMI, BITS, certificates, boundaries, or the management point.
  • Access denied or logon errors: examine the service security descriptor, local security policy, GPO, and endpoint protection events.
  • Immediate crash: correlate Event ID 1000/1001 with the faulting module and CcmExec.log.

Check the service and dependencies

Run an elevated PowerShell or Command Prompt and record the exact output:

Get-Service CcmExec, Winmgmt, BITS | Select-Object Name, Status, StartType
Get-Process CcmExec -ErrorAction SilentlyContinue
sc queryex CcmExec
sc qc CcmExec
sc query winmgmt
sc query bits

For detailed service configuration:

Get-CimInstance Win32_Service -Filter "Name='CcmExec'" |
  Select-Object Name, State, StartMode, StartName, PathName

The normal health expectation is an existing CcmExec service with Automatic startup that stays running. If a policy keeps changing the startup type, identify the responsible GPO before correcting it. Try one controlled start and preserve the returned error:

net start CcmExec

or:

Start-Service CcmExec

Read the logs before changing the installation

Microsoft’s log reference lists client logs in C:WindowsCCMLogs and setup logs in C:WindowsCCMSetupLogs (Configuration Manager log files).

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
Question Evidence
Did setup install or uninstall correctly? C:WindowsCCMSetupLogsccmsetup.log
Did Windows Installer register the client? C:WindowsCCMSetupLogsclient.msi.log
Why is the agent starting or stopping? C:WindowsCCMLogsCcmExec.log
Is automatic remediation occurring? CcmRepair.log, CcmEval.log, and CcmEvalTask.log
Is management-point communication failing? CcmMessaging.log, plus LocationServices.log and ClientLocation.log
Are downloads failing? ContentTransferManager.log and BITS event logs
Is WMI failing? WMI-Activity and System event logs
Did the process crash? Application Error and Windows Error Reporting events

Use CMTrace, OneTrace, or Support Center Log File Viewer where available; they make timestamps and thread activity easier to follow. Also inspect Event Viewer → Windows Logs → System and Application, plus Applications and Services Logs. Microsoft documents the logging tools and temporary debug configuration (logging and troubleshooting tools).

Test WMI, BITS, and the WBEM PATH

WMI is a major client dependency, but a stopped service alone does not prove repository corruption. Test without making destructive changes:

winmgmt /verifyrepository
Get-CimInstance -Namespace rootccm -ClassName SMS_Client

On older PowerShell versions:

Get-WmiObject -Namespace rootccm -Class SMS_Client
  • “WMI repository is consistent”: do not rebuild it merely because CcmExec is stopped.
  • Inconsistent repository: plan repair under change control and check whether unrelated providers are affected.
  • Namespace or provider errors: correlate WMI-Activity events with CcmExec.log before repairing.

Microsoft’s older SMS Agent Host startup guidance also identifies a missing system PATH entry for %SystemRoot%System32Wbem and WMI startup timing as possible causes (SMS Agent Host startup failures). That article predates modern Configuration Manager, so treat this as a targeted legacy check, not a universal fix:

[Environment]::GetEnvironmentVariable("Path", "Machine")

Look for %SystemRoot%System32Wbem or its expanded form, commonly C:WindowsSystem32Wbem. Make only a documented, minimal correction; never overwrite the entire PATH.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Microsoft also documents that restarting WMI can leave CcmExec nonfunctional until the agent itself is restarted (SMS Agent Host after WMI restart). Restarting WMI can interrupt other applications, so schedule it appropriately.

Look for policy, security, and operating-system interference

  • GPO may reset the service startup type, permissions, or local privileges.
  • AppLocker, application control, or antivirus may block, quarantine, or delete CcmExec.exe or a client DLL.
  • Firewall or network-control software may prevent management-point communication even while the service runs.
  • A scheduled task or remediation script may repeatedly stop the service.
  • Resource exhaustion, handle leaks, or a recent OS/client update can cause delayed failures.

Review endpoint-security consoles for the exact file and timestamp. Do not disable antivirus globally; use only an approved, temporary exception for controlled diagnosis.

Check documented System Center 2012 R2 edge cases

BitLocker with a restart-after-program deployment

Microsoft documented a narrow System Center 2012 R2 defect in which CcmExec.exe could stop when BitLocker was enabled and a deployed program was configured to restart the computer. The associated hotfix applies only when its product build, architecture, and scenario match (BitLocker/restart issue).

Repeated network disruptions

Another System Center 2012 R2 issue involved frequent network interruptions, management-point disconnections, rising CcmExec handle counts, and eventual exhaustion of network ports (network-disruption issue). This is relevant when failures appear only after long uptime, not as a blanket explanation for every stopped service.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi

Repair or reinstall only after preserving evidence

Use the built-in repair when the executable and installation are present:

C:WindowsCCMccmrepair.exe

If setup logs show rollback, missing files, or a damaged registration, remove the client through the supported setup program:

C:WindowsCCMSetupCCMSetup.exe /uninstall

After removal completes, reinstall from a known-good source with values matching the site:

\<SiteServer>SMS_<SiteCode>ClientCCMSetup.exe ^
  /mp:<ManagementPointFQDN> ^
  SMSSITECODE=<SiteCode> ^
  /logon

Management point, site code, boundaries, protocol, certificates, and other properties must match the local design. Review ccmsetup.log. Microsoft lists setup properties and return codes—including 0 (success), 6 (error), 7 (reboot required), 8 (setup already running), 9 (prerequisite failure), and 10 (manifest hash validation failure)—in its client installation properties reference.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Do not manually delete C:WindowsCCM, C:WindowsCCMSetup, or Configuration Manager registry keys before official uninstall completes. That destroys diagnostic evidence and can create a second installation problem. Reinstallation will not fix a blocking GPO, endpoint-security rule, broken operating system, certificate issue, or unreachable management point.

Treat WMI repository repair as a last resort

If WMI is inconsistent or providers are missing, first confirm the WMI service, review WMI-Activity and System events, and test whether the damage is limited to rootccm. Follow Microsoft-supported repair procedures for the operating system, document or back up relevant configuration, and obtain change approval. Deleting or renaming the repository can break unrelated applications and provider registrations. Reinstall the Configuration Manager client afterward if its providers were removed.

Verify recovery

  1. Confirm the service remains active:
    Get-Service CcmExec
  2. Check new successful entries and timestamps in CcmExec.log, CcmMessaging.log, and CcmEval.log.
  3. Verify site assignment, boundary-group location, management-point name resolution and reachability, and certificate validity when HTTPS is used.
  4. Trigger an appropriate machine-policy or client-health evaluation and confirm healthy reporting in the Configuration Manager console.

Remember the platform lifecycle

Windows Server 2012 and 2012 R2 reached the end of ordinary support on October 10, 2023, according to Microsoft’s Configuration Manager servicing documentation (servicing and lifecycle guidance). Extended Security Updates or a separate support agreement do not make every current Configuration Manager release compatible. Confirm support for the exact Configuration Manager version and plan an operating-system and client-infrastructure upgrade.

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Leave a Reply

Your email address will not be published. Required fields are marked *

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Read next

Recommended PC Tool
Recommended PC Tool
Windows Errors? Fix Them Before They SpreadFree repair scan
Outdated Drivers Are Slowing You DownFree scan - exact matches

Two free Windows tools

One Free Minute Could Fix That PC

Before you go - each of these free tools takes about a minute and tackles what quietly slows a Windows PC down.

Special offer. View Outbyte info, uninstall instructions, EULA, and Privacy Policy.