File details
File name: notepad.exe
Name: Notepad
Description: Microsoft® Windows® Operating System
Version: 6.2.9200.16384 (win8_rtm.120725-1247)
Product version: 6.2.9200.16384
Size: 228.5 KB
Original file name: NOTEPAD.EXE.MUI
Windows file protection:
Yes
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0016989911%
Privileged CPU:
0.0006860864%

User CPU:
0.00101290462358%

Privileged CPU time: 1296.88 ms
Privileged CPU time /min: 50 ms
CPU cycle count:
14,530,917
CPU cycle count /min: 166,349,535
Context switches /sec:
2
 | Memory utilization averages |
Committed memory:
115.54 MB
Peak committed memory: 406.02 MB
Paged memory:
6.43 MB
Peak paged memory: 9.65 MB
Paged system memory:
228.07 KB
Non-paged system memory: 21.06 KB
Working set memory:
19.61 MB
Peak working set memory: 23.6 MB
Min working set memory: 7.42 MB
Private memory:
6.43 MB
Page faults:
8,839
Page faults /min: 341
 | Process I/O averages |
Total read operations:
94
Read operations /min: 4
Total read transfer: 326.85 KB
Read transfer /min: 12.62 KB
Total write operations:
2
Write operations /min: 1
Total write transfer: 232 Bytes
Write transfer /min: 9 Bytes
Total other operations:
1,682
Other operations /min: 65
Total other transfer: 26.22 KB
Other Transfer /min: 1.01 KB
 | GUI Object Averages |
GDI objects:
79
Peak GDI objects: 188
USER objects:
32
Peak USER objects: 152
Resources
Handle count average: 289
Thread count average: 4
Thread resource averages
Total CPU: 0.028934548426%
Privileged CPU: 0.021199570134%
User CPU: 0.007734978292%
CPU Cycle count /sec: 710,344
Context switches /sec: 2
Module memory size: 248 KB
Process details
Runs as (owner): User
Integrety level: High
Windows platform: 64-bit
Process Command
"C:\Windows\system32\NOTEPAD.EXE" C:\Program Files\Doom 3\cdoom\docs\Readme.txt
Shell open command details
Name: comfile
Command: NOTEPAD.EXE %1
Image hashes
MD5: 22e1963fe26d5bceab0575eb6ff60cb5
SHA-1: c23f9cf64fe79305b8233c937da0eb05464f8396
SHA-256: 234b85ffe6db161ab421ed8d2a86c5882c85585ef4a471b44fc7ce0347c85615
PE image details
Subsystem: Windows GUI
Langauge*: Microsoft Visual C++
File entropy: 7.12185
File packed: No
Import Table
advapi32.dll

RegSetValueExW
RegQueryValueExW
RegCloseKey
RegCreateKeyW
RegOpenKeyExW
IsTextUnicode
CloseServiceHandle
QueryServiceConfigW
OpenServiceW
OpenSCManagerW
comctl32.dll

CreatePropertySheetPageW
PropertySheetW
CreateStatusWindowW
comdlg32.dll

ReplaceTextW
PageSetupDlgW
PrintDlgExW
FindTextW
ChooseFontW
GetSaveFileNameW
CommDlgExtendedError
GetOpenFileNameW
GetFileTitleW
gdi32.dll

CreateFontIndirectW
SetMapMode
SetViewportExtEx
SetWindowExtEx
LPtoDP
SetBkMode
GetTextMetricsW
SetAbortProc
StartDocW
StartPage
EndPage
AbortDoc
EndDoc
DeleteDC
TextOutW
GetTextExtentPoint32W
CreateDCW
SelectObject
GetTextFaceW
EnumFontsW
GetDeviceCaps
DeleteObject
GetStockObject
GetObjectW
kernel32.dll

FindNLSString
GlobalAlloc
GlobalUnlock
GlobalLock
GetTimeFormatW
GetDateFormatW
GetLocalTime
GetUserDefaultUILanguage
HeapFree
HeapAlloc
GetProcessHeap
GetFileInformationByHandle
InterlockedExchange
FreeLibraryAndExitThread
GetFileAttributesW
Wow64RevertWow64FsRedirection
Wow64DisableWow64FsRedirection
IsWow64Process
GetCurrentProcess
CreateThread
LoadLibraryW
GetModuleFileNameW
CreateFileMappingW
FormatMessageW
MapViewOfFile
MultiByteToWideChar
UnmapViewOfFile
LocalReAlloc
GetACP
DeleteFileW
SetEndOfFile
WideCharToMultiByte
SetLastError
WriteFile
GetLastError
LocalSize
GetFullPathNameW
MulDiv
GetCommandLineW
GetCurrentProcessId
FoldStringW
lstrcmpW
FindFirstFileW
FindClose
HeapSetInformation
TerminateProcess
GetSystemTimeAsFileTime
GetCurrentThreadId
GetTickCount
QueryPerformanceCounter
GetModuleHandleA
SetUnhandledExceptionFilter
GetStartupInfoA
InterlockedCompareExchange
Sleep
LocalLock
LocalUnlock
lstrlenW
GetLocaleInfoW
GlobalFree
lstrcmpiW
SetErrorMode
CreateFileW
ReadFile
CloseHandle
LocalAlloc
InterlockedDecrement
LocalFree
InterlockedIncrement
GetVersionExW
UnhandledExceptionFilter
msvcrt.dll
ntdll.dll

WinSqmIncrementDWORD
RtlInitUnicodeString
NtQueryLicenseValue
WinSqmAddToStream
ole32.dll

CoInitializeEx
CoUninitialize
CoTaskMemAlloc
CoCreateInstance
CoTaskMemFree
CoInitialize
shell32.dll

DragAcceptFiles
SHAddToRecentDocs
SHGetFolderPathW
SHCreateItemFromParsingName
ShellExecuteExW
DragQueryFileW
DragFinish
ShellAboutW
shlwapi.dll

user32.dll

SetActiveWindow
GetKeyboardLayout
PostQuitMessage
DefWindowProcW
GetForegroundWindow
IsIconic
DestroyWindow
MessageBeep
GetWindowPlacement
CharUpperW
RegisterClassExW
LoadImageW
LoadCursorW
SetWindowLongW
LoadAcceleratorsW
GetSystemMenu
SetWindowPlacement
CreateWindowExW
RegisterWindowMessageW
UpdateWindow
InvalidateRect
SetScrollPos
GetWindowTextLengthW
GetWindowLongW
PeekMessageW
EnableWindow
DialogBoxParamW
CreateDialogParamW
GetWindowTextW
SetWindowPos
SetCursor
SetForegroundWindow
FindWindowW
GetSystemMetrics
MoveWindow
SendMessageW
CharNextW
CheckMenuItem
CloseClipboard
IsClipboardFormatAvailable
OpenClipboard
GetMenuState
EnableMenuItem
GetSubMenu
GetClientRect
UnhookWinEvent
GetFocus
GetMenu
MessageBoxW
WinHelpW
GetDlgCtrlID
ChildWindowFromPoint
GetDC
ShowWindow
DrawTextExW
ReleaseDC
LoadIconW
SetWinEventHook
GetMessageW
PostMessageW
IsDialogMessageW
TranslateAcceleratorW
EndDialog
GetDlgItemTextW
SetDlgItemTextW
SetFocus
SetWindowTextW
GetParent
LoadStringW
SendDlgItemMessageW
GetCursorPos
ScreenToClient
TranslateMessage
GetAncestor
DispatchMessageW
SetProcessDPIAware
version.dll

GetFileVersionInfoExW
GetFileVersionInfoSizeExW
VerQueryValueW
winspool.drv

OpenPrinterW
ClosePrinter
GetPrinterDriverW