File details
File name: 4whighin.exe
Name: MindSpark Toolbar Platform for Internet Explorer and Firefox
Description: Run a MindSpark DLL as an App
Version: 1, 0, 1, 0
Product version: 2, 3, 0, 0
Size: 21.56 KB
Original file name: t8HighIn.exe
Digital certificate
Resource utilization
 | CPU utilization averages |
Total CPU: 0.1563428854%
Privileged CPU:
0.0146481483%

User CPU:
0.14169473707409%

Privileged CPU time: 116.98 ms
Privileged CPU time /min: 0 ms
CPU cycle count:
565,983,190
CPU cycle count /min: 933,776
Context switches /sec:
360
 | Memory utilization averages |
Committed memory:
75.66 MB
Peak committed memory: 83.28 MB
Paged memory:
3.47 MB
Peak paged memory: 3.6 MB
Paged system memory:
94.52 KB
Non-paged system memory: 13.81 KB
Working set memory:
1.33 MB
Peak working set memory: 10.4 MB
Min working set memory: 1.33 MB
Private memory:
3.47 MB
Page faults:
9,822
Page faults /min: 41
 | Process I/O averages |
Total read operations:
33
Read operations /min: 1
Total read transfer: 211.56 KB
Read transfer /min: 317 Bytes
Total write operations:
1,049
Write operations /min: 1
Total write transfer: 2.12 MB
Write transfer /min: 754 Bytes
Total other operations:
3,314
Other operations /min: 4
Total other transfer: 74.81 KB
Other Transfer /min: 74 Bytes
 | GUI Object Averages |
GDI objects:
9
Peak GDI objects: 10
USER objects:
4
Peak USER objects: 9
Resources
Handle count average: 294
Thread count average: 7
Thread resource averages
wow64.dll

Total CPU: 0.008543744163%
Privileged CPU: 0.004271872081%
User CPU: 0.004271872081%
CPU Cycle count /sec: 503,380
Context switches /sec: 18
Module memory size: 252 KB
Total CPU: 0.006017535464%
Privileged CPU: 0.004645474761%
User CPU: 0.001372060703%
CPU Cycle count /sec: 138,282
Module memory size: 20 KB
ntdll.dll

Total CPU: 0.000381278962%
Privileged CPU: 0.000381278962%
User CPU: 0.000000000000%
CPU Cycle count /sec: 2,326
Module memory size: 1.23 MB
Total CPU: 0.000324799321%
Privileged CPU: 0.000318357329%
User CPU: 0.000006441992%
CPU Cycle count /sec: 4,655
Module memory size: 160 KB
Process details
Runs as (owner): User
Integrety level: High
Windows platform: 32-bit
Process Commands
"C:\Program Files\iWon_5k\bar\1.bin\5kHighIn.exe" 5ktpinst.dll,#5
"C:\Program Files\MyWebFace_5a\bar\1.bin\5aHighIn.exe" 5atpinst.dll,#5
"C:\Program Files\Retrogamer_4w\bar\1.bin\4wHighIn.exe" 4wtpinst.dll,#5
Network connectivity
UDP: LISTENING on port 59706
UDP: LISTENING on port 54191
UDP: LISTENING on port 64648
Image hashes
MD5: 3de6281a5e06e9fea20282b0ceec2993
SHA-1: b714afe68f2a7cacc274493f8b4ade00300cfd50
SHA-256: db90558b56e6f8b5a3123604762cb372f5e8f32fdb1a97bd76e461cea49d87dd
PE image details
File packed: No
Import Table
kernel32.dll

FreeLibrary
GetProcAddress
LoadLibraryExA
GetModuleFileNameA
lstrcpyA
lstrlenA
GetStartupInfoA
ExitProcess
GetCommandLineA
GetModuleHandleA
DebugBreak
HeapAlloc
GetProcessHeap
HeapReAlloc
HeapFree
user32.dll
