File details
File name: hsservice.exe
Size: 286.78 KB
Digital certificate
Certificate authority:
DigiCert Inc
Effective date: 7/1/2012
Expiration date: 8/26/2014
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0001264950%
Privileged CPU:
0.0000889371%

User CPU:
0.00003755789902%

Privileged CPU time: 296875 ms
Privileged CPU time /min: 107 ms
 | Memory utilization averages |
Committed memory:
39.15 MB
Peak committed memory: 42.23 MB
Paged memory:
3.01 MB
Peak paged memory: 3.52 MB
Paged system memory:
60.52 KB
Non-paged system memory: 4.67 KB
Working set memory:
80 KB
Peak working set memory: 6.42 MB
Min working set memory: 44 KB
Private memory:
3.01 MB
Page faults:
9,180
Page faults /min: 3
 | Process I/O averages |
Total read operations:
190
Read operations /min: 1
Total read transfer: 1.05 MB
Read transfer /min: 397 Bytes
Total write operations:
845
Write operations /min: 1
Total write transfer: 353.25 KB
Write transfer /min: 130 Bytes
Total other operations:
2,467
Other operations /min: 1
Total other transfer: 283.83 KB
Other Transfer /min: 105 Bytes
 | GUI Object Averages |
GDI objects:
4
USER objects:
1
Resources
Handle count average: 160
Thread count average: 2
Process details
Runs as (owner): User
Integrety level: Undefined
Windows platform: 32-bit
Runs as a service: Yes
Parent Process
Process Command
"C:\Program Files\All History Cleaner\HSService.exe"
Service details
Name: All History Cleaner Service
Service name: HSService
Service type:
Win32OwnProcess
Description: “All History Cleaner service.”
Network connectivity
TCP: localhost on port 4527
Image hashes
MD5: f90281255888492aa8e0c9763ac2308f
SHA-1: f55c1d7386ebea21448fe062cd0b23891f1d7c2d
SHA-256: 1f7a5a205f87c3bd829559020fec7c10f27b940e426c9af2698854dbce164a21
PE image details
Subsystem: Windows Console
File packed: No
Import Table
advapi32.dll

OpenSCManagerW
EnumDependentServicesW
QueryServiceStatusEx
StartServiceCtrlDispatcherW
DeleteService
ControlService
QueryServiceStatus
OpenServiceW
CloseServiceHandle
ChangeServiceConfig2W
StartServiceW
CreateServiceW
RegisterServiceCtrlHandlerW
SetServiceStatus
InitiateSystemShutdownW
RegDeleteKeyW
RegCreateKeyExW
RegDeleteValueW
RegSetValueExW
RegEnumValueW
RegCloseKey
RegQueryValueExW
RegOpenKeyExW
RegEnumKeyExW
iphlpapi.dll

kernel32.dll

ReadProcessMemory
OpenProcess
CloseHandle
GetProcAddress
GetModuleHandleW
Sleep
GetSystemTimeAsFileTime
GetTickCount
CreateToolhelp32Snapshot
Process32FirstW
Process32NextW
lstrlenW
WideCharToMultiByte
GetLastError
CopyFileW
DeleteFileW
RemoveDirectoryW
GetCurrentThreadId
CreateMutexW
WaitForSingleObject
ReleaseMutex
GetExitCodeProcess
TerminateThread
MultiByteToWideChar
CreatePipe
GetCurrentProcess
GetFileType
CreateProcessW
ReadFile
CreateThread
SetConsoleCtrlHandler
FreeConsole
AttachConsole
GenerateConsoleCtrlEvent
FormatMessageW
LocalFree
FileTimeToSystemTime
FileTimeToLocalFileTime
SystemTimeToFileTime
GetLocalTime
GetCommandLineW
GetModuleFileNameW
SetCurrentDirectoryW
HeapAlloc
GetProcessHeap
HeapFree
lstrlenA
LoadLibraryW
SetLastError
FreeLibrary
GetLocaleInfoW
WriteFile
GetConsoleCP
GetStdHandle
GetStartupInfoW
GetConsoleMode
SetFilePointer
FlushFileBuffers
HeapReAlloc
FreeEnvironmentStringsW
GetEnvironmentStringsW
QueryPerformanceCounter
SetEnvironmentVariableA
GetCurrentProcessId
GetUserDefaultLCID
GetLocaleInfoA
EnumSystemLocalesA
IsValidLocale
WriteConsoleW
SetStdHandle
CreateFileW
SetEndOfFile
CompareStringW
DuplicateHandle
InitializeCriticalSectionAndSpinCount
SetHandleCount
HeapCreate
TlsFree
TlsSetValue
TlsGetValue
TlsAlloc
IsValidCodePage
GetOEMCP
GetACP
ExitProcess
HeapSize
IsProcessorFeaturePresent
IsDebuggerPresent
InterlockedIncrement
InterlockedDecrement
InterlockedCompareExchange
InterlockedExchange
GetStringTypeW
EncodePointer
DecodePointer
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
GetCPInfo
GetTimeZoneInformation
ExitThread
HeapSetInformation
RaiseException
RtlUnwind
LCMapStringW
TerminateProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
pdh.dll

PdhOpenQueryW
PdhGetFormattedCounterValue
PdhCollectQueryData
PdhAddCounterW
PdhLookupPerfNameByIndexW
PdhCloseQuery
secur32.dll

LsaFreeReturnBuffer
LsaGetLogonSessionData
LsaEnumerateLogonSessions
shell32.dll

sqlite3.dll

sqlite3_extended_result_codes
sqlite3_close
sqlite3_open16
sqlite3_exec
sqlite3_free
urlmon.dll
