File details
File name: toolbar.exe
Name: Toolbar Core
Description: Toolbar Core
Version: 21.2.0.1139
Size: 258.45 KB
Original file name: Toolbar.exe
Digital certificate
Certificate authority:
VeriSign
Effective date: 4/15/2012
Expiration date: 4/8/2015
Resource utilization
 | CPU utilization averages |
Total CPU: 0.0001486045%
Privileged CPU:
0.0001320320%

User CPU:
0.00001657248041%

Privileged CPU time: 30984.55 ms
Privileged CPU time /min: 3 ms
 | Memory utilization averages |
Committed memory:
460.02 MB
Peak committed memory: 468.57 MB
Paged memory:
318.41 MB
Peak paged memory: 319.07 MB
Paged system memory:
242.45 KB
Non-paged system memory: 23.18 KB
Working set memory:
179.59 MB
Peak working set memory: 206.65 MB
Min working set memory: 65.81 MB
Private memory:
318.41 MB
Page faults:
218,103
Page faults /min: 18
 | Process I/O averages |
Total read operations:
42,463
Read operations /min: 4
Total read transfer: 57.1 MB
Read transfer /min: 4.88 KB
Total write operations:
2,405
Write operations /min: 1
Total write transfer: 2.35 MB
Write transfer /min: 206 Bytes
Total other operations:
154,149
Other operations /min: 13
Total other transfer: 3.81 MB
Other Transfer /min: 333 Bytes
 | GUI Object Averages |
GDI objects:
414
USER objects:
196
Resources
Handle count average: 648
Thread count average: 13
Thread resource averages
Total CPU: 0.060078979443%
Privileged CPU: 0.003129927884%
User CPU: 0.056949051559%
Module memory size: 272 KB
ntdll.dll

Total CPU: 0.000098068907%
Privileged CPU: 0.000082981395%
User CPU: 0.000015087512%
Module memory size: 712 KB
wininet.dll

Total CPU: 0.000005486291%
Privileged CPU: 0.000002743145%
User CPU: 0.000002743145%
Module memory size: 924 KB
Process details
Runs as (owner): User
Integrety level: Undefined
Windows platform: 32-bit
Parent Process
Process Command
"C:\Program Files\AskPartnerNetwork\Toolbar\Toolbar.exe" -Embedding
Network connectivity
UDP: LISTENING on port 1078
Image hashes
MD5: 0186ae83358a378dc523bc250f0beeaf
SHA-1: 6954360b0a4960a236ab6c925b5d97083afecf1d
SHA-256: 57ac51551f045d42d0b0267d79085ac3fb8d82b30bb833b747ec9892615ee228
PE image details
Subsystem: Windows GUI
File packed: No
Import Table
advapi32.dll

RegOpenKeyExW
CryptVerifySignatureW
CryptReleaseContext
InitializeSecurityDescriptor
SetSecurityDescriptorDacl
CryptGetHashParam
RegEnumKeyExW
RegQueryInfoKeyW
RegSetValueExW
RegCloseKey
RegDeleteValueW
RegDeleteKeyW
RegCreateKeyExW
CryptAcquireContextW
CryptCreateHash
CryptHashData
CryptDestroyHash
CryptDestroyKey
crypt32.dll

CryptDecodeObjectEx
CryptImportPublicKeyInfo
gdi32.dll

GetObjectW
CreateSolidBrush
GetDeviceCaps
BitBlt
CreateCompatibleDC
CreateCompatibleBitmap
DeleteDC
SelectObject
DeleteObject
GetStockObject
kernel32.dll

LoadLibraryW
InterlockedIncrement
InterlockedDecrement
FreeLibrary
LoadLibraryExW
WaitForMultipleObjects
QueueUserWorkItem
WriteFile
CreateFileW
DeleteFileW
Sleep
FindClose
FindNextFileW
FindFirstFileW
WaitForSingleObject
GetFileAttributesW
CreateThread
GetCommandLineW
SetErrorMode
OutputDebugStringW
InterlockedPopEntrySList
VirtualFree
InterlockedPushEntrySList
InterlockedCompareExchange
GetProcessHeap
SetEndOfFile
LCMapStringW
GetStringTypeW
WideCharToMultiByte
WriteConsoleW
SetStdHandle
CreateFileA
GetSystemTimeAsFileTime
GetTickCount
SizeofResource
GetEnvironmentStringsW
FreeEnvironmentStringsW
IsValidCodePage
GetOEMCP
GetACP
GetCPInfo
HeapSize
HeapReAlloc
TlsFree
TlsSetValue
TlsGetValue
TlsAlloc
ExitProcess
HeapDestroy
HeapCreate
SetFilePointer
GetFileType
GetStdHandle
SetHandleCount
GetConsoleMode
GetConsoleCP
IsProcessorFeaturePresent
IsDebuggerPresent
SetUnhandledExceptionFilter
UnhandledExceptionFilter
TerminateProcess
GetCurrentProcessId
CloseHandle
GetModuleHandleW
GetProcAddress
LocalFree
CreateEventW
FindResourceExW
FindResourceW
LoadResource
FlushFileBuffers
LockResource
DeleteCriticalSection
InitializeCriticalSectionAndSpinCount
lstrcmpiW
SetEvent
SetLastError
GetCurrentThreadId
RaiseException
EnterCriticalSection
GlobalAlloc
GlobalLock
GlobalUnlock
GetModuleFileNameW
MulDiv
lstrcmpW
GetLastError
lstrlenW
lstrlenA
GetCurrentProcess
FlushInstructionCache
GetStartupInfoW
HeapSetInformation
ExitThread
EncodePointer
DecodePointer
VirtualQuery
GetSystemInfo
VirtualAlloc
VirtualProtect
RtlUnwind
HeapAlloc
HeapFree
ReadFile
MultiByteToWideChar
LeaveCriticalSection
QueryPerformanceCounter
ole32.dll

StringFromGUID2
OleLockRunning
CoGetClassObject
CLSIDFromProgID
CLSIDFromString
CoCreateInstance
CoTaskMemAlloc
CreateStreamOnHGlobal
OleInitialize
OleUninitialize
CoTaskMemRealloc
CoTaskMemFree
CoUninitialize
CoInitialize
CoRevokeClassObject
CoReleaseServerProcess
CoAddRefServerProcess
CoRegisterClassObject
CoInitializeEx
shell32.dll

SHGetFolderPathAndSubDirW
shlwapi.dll

PathFileExistsW
UrlCreateFromPathW
urlmon.dll

CoInternetSetFeatureEnabled
user32.dll

CreateWindowExW
DestroyWindow
IsWindow
SendMessageW
DefWindowProcW
PostMessageW
CallWindowProcW
GetKeyState
GetWindow
GetParent
GetSysColor
CharNextW
MoveWindow
SetWindowPos
GetClientRect
ClientToScreen
ScreenToClient
GetDC
ReleaseDC
GetWindowLongW
SetWindowLongW
DispatchMessageW
CharUpperW
PostThreadMessageW
GetMessageW
UnregisterClassA
TranslateMessage
RegisterWindowMessageW
GetWindowTextLengthW
GetWindowTextW
SetWindowTextW
CreateAcceleratorTableW
RegisterClassExW
LoadCursorW
GetClassInfoExW
SetFocus
GetFocus
DestroyAcceleratorTable
GetDesktopWindow
BeginPaint
EndPaint
FillRect
ReleaseCapture
GetClassNameW
GetDlgItem
IsChild
SetCapture
RedrawWindow
InvalidateRgn
InvalidateRect