File details
File name: regcure.exe
Name: RegCure
Description: RegCure Application
Version: 3, 0, 3, 0
Product version: 3.0.3.10
Size: 12.26 MB
Original file name: RegCure.exe
Digital certificate
Certificate authority:
VeriSign
Resource utilization
 | CPU utilization averages |
Total CPU: 2.4441825635%
Privileged CPU:
0.1312497584%

User CPU:
2.31293280511891%

Privileged CPU time: 3725.36 ms
Privileged CPU time /min: 0 ms
CPU cycle count:
1,160,655,486
Context switches /sec:
2,240
 | Memory utilization averages |
Committed memory:
143 MB
Peak committed memory: 149 MB
Paged memory:
12.7 MB
Peak paged memory: 14.68 MB
Paged system memory:
123.68 KB
Non-paged system memory: 20.59 KB
Working set memory:
5.29 MB
Peak working set memory: 28.51 MB
Min working set memory: 5.26 MB
Private memory:
12.7 MB
Page faults:
8,586
Page faults /min: 0
 | Process I/O averages |
Total read operations:
98,345
Total read transfer: 382.24 MB
Total write operations:
12
Total write transfer: 165.02 KB
Total other operations:
3,602
Total other transfer: 24.52 KB
 | GUI Object Averages |
GDI objects:
801
Peak GDI objects: 805
USER objects:
270
Peak USER objects: 284
Resources
Handle count average: 328
Thread count average: 9
Thread resource averages
Total CPU: 0.237574654952%
Privileged CPU: 0.220917615884%
User CPU: 0.016657039068%
CPU Cycle count /sec: 8,027,544
Context switches /sec: 55
Module memory size: 12.28 MB
Total CPU: 0.001774331189%
Privileged CPU: 0.000887093294%
User CPU: 0.000887237895%
CPU Cycle count /sec: 23,521
Module memory size: 5.71 MB
wininet.dll

Total CPU: 0.001773529061%
Privileged CPU: 0.001773529061%
User CPU: 0.000000000000%
CPU Cycle count /sec: 22,123
Module memory size: 980 KB
Process details
Runs as (owner): User
Integrety level: High
Windows platform: 32-bit
Process Command
"C:\Program Files\RegCure\regcure.exe" -t
Scheduled task details
Name: \RegCure Program Check
Network connectivity
UDP: LISTENING on port 54614
Image hashes
MD5: 7cec626a8eb97972c3bbf34327fce6a1
SHA-1: c5ed2ff2d23ac5de13f770afd59d467931556e84
SHA-256: 56c2b5b3d992b74b5e21e2a448af3db52cefec6cf3eb8aa6a9527d4f86040146
PE image details
Subsystem: Windows GUI
File packed: No
Import Table
advapi32.dll

GetTokenInformation
RegCreateKeyA
RegQueryValueA
RegOpenKeyA
RegSetValueA
RegDeleteKeyA
SetSecurityInfo
GetAce
RegEnumValueA
RegQueryInfoKeyA
RegOpenKeyExA
RegEnumKeyA
FreeSid
EqualSid
AllocateAndInitializeSid
OpenProcessToken
RegCloseKey
RegSetValueExA
RegCreateKeyExA
RegQueryValueExA
GetUserNameA
RegEnumKeyExA
OpenThreadToken
LookupPrivilegeValueA
AdjustTokenPrivileges
CopySid
GetLengthSid
GetSidSubAuthority
GetSidSubAuthorityCount
GetSidIdentifierAuthority
RegGetKeySecurity
SetSecurityDescriptorDacl
InitializeSecurityDescriptor
AddAce
InitializeAcl
RegSetKeySecurity
RegDeleteValueA
AddAccessAllowedAce
GetSecurityInfo
comctl32.dll

PropertySheetA
_TrackMouseEvent
comdlg32.dll

gdi32.dll

LPtoDP
PtVisible
RectVisible
TextOutA
ExtTextOutA
Escape
SetViewportOrgEx
GetViewportOrgEx
DeleteDC
GetTextExtentPointA
GetTextMetricsA
CreateFontW
CreateBitmapIndirect
GetBitmapBits
SetPixel
CreateDIBitmap
CreateRectRgnIndirect
DPtoLP
GetWindowExtEx
GetViewportExtEx
GetMapMode
GetBkColor
PlayMetaFile
EnumMetaFile
GetObjectType
PlayMetaFileRecord
SelectPalette
StretchBlt
CreatePatternBrush
CreateDIBPatternBrushPt
ExtSelectClipRgn
PolyBezierTo
PolylineTo
PolyDraw
ArcTo
ScaleWindowExtEx
SetWindowExtEx
OffsetWindowOrgEx
SetWindowOrgEx
ScaleViewportExtEx
SetViewportExtEx
OffsetViewportOrgEx
StartDocA
SelectClipPath
GetClipRgn
SelectClipRgn
SetColorAdjustment
SetArcDirection
SetMapperFlags
SetTextCharacterExtra
SetTextJustification
SetTextAlign
MoveToEx
LineTo
OffsetClipRgn
IntersectClipRect
ExcludeClipRect
GetClipBox
SetMapMode
ModifyWorldTransform
SetWorldTransform
SetGraphicsMode
SetStretchBltMode
SetROP2
SetPolyFillMode
SetBkMode
SetBkColor
CreateDCA
CopyMetaFileA
Rectangle
CreatePen
GetCurrentPositionEx
GetDeviceCaps
SaveDC
GetTextExtentPoint32A
RestoreDC
DeleteObject
SelectObject
CreateFontIndirectA
GetTextColor
SetTextColor
GetStockObject
GetPixel
CombineRgn
CreateRectRgn
CreateCompatibleBitmap
BitBlt
CreateCompatibleDC
GetObjectA
CreateSolidBrush
ExtCreatePen
CreateHatchBrush
GetDCOrgEx
PatBlt
SetRectRgn
EnumFontFamiliesExA
GetCharWidthA
CreateFontA
StretchDIBits
GetRgnBox
CreateBitmap
kernel32.dll
mpr.dll

msimg32.dll

ole32.dll

ReadFmtUserTypeStg
ReadClassStg
StringFromCLSID
CoTreatAsClass
CreateBindCtx
ReleaseStgMedium
CoTaskMemAlloc
OleDuplicateData
CLSIDFromProgID
CLSIDFromString
StringFromGUID2
CoDisconnectObject
CoGetClassObject
StgOpenStorageOnILockBytes
StgCreateDocfileOnILockBytes
OleRegGetUserType
OleRun
OleUninitialize
CoFreeUnusedLibraries
OleInitialize
CoRegisterClassObject
CoRevokeClassObject
OleSetClipboard
OleIsCurrentClipboard
OleFlushClipboard
CoRegisterMessageFilter
CoTaskMemFree
CoInitialize
CoCreateInstance
CoUninitialize
WriteClassStg
CreateStreamOnHGlobal
WriteFmtUserTypeStg
SetConvertStg
CoInitializeSecurity
CreateILockBytesOnHGlobal
CoInitializeEx
shell32.dll

ShellExecuteA
ShellExecuteExA
SHAppBarMessage
Shell_NotifyIconA
SHGetSpecialFolderPathA
ExtractIconA
DragQueryFileA
DragFinish
SHGetFileInfoA
shfolder.dll

shlwapi.dll

PathCompactPathA
PathRemoveFileSpecA
PathRemoveFileSpecW
UrlUnescapeA
PathRemoveExtensionA
PathFindExtensionA
PathIsUNCA
PathStripToRootA
PathFindOnPathA
PathIsNetworkPathA
PathFindFileNameA
PathGetCharTypeA
PathFileExistsA
PathUnquoteSpacesA
PathAppendA
user32.dll
wininet.dll

FtpCommandA
InternetCloseHandle
InternetReadFile
HttpQueryInfoA
HttpSendRequestA
HttpAddRequestHeadersA
HttpOpenRequestA
InternetConnectA
InternetOpenA
InternetCrackUrlA
InternetCanonicalizeUrlA
InternetQueryOptionA
InternetSetOptionExA
InternetSetCookieA
InternetGetCookieA
InternetQueryDataAvailable
FtpDeleteFileA
FtpRenameFileA
FtpCreateDirectoryA
FtpRemoveDirectoryA
FtpSetCurrentDirectoryA
FtpGetCurrentDirectoryA
FtpPutFileA
FtpGetFileA
InternetErrorDlg
InternetFindNextFileA
GopherFindFirstFileA
InternetGetLastResponseInfoA
InternetSetStatusCallback
InternetSetFilePointer
InternetWriteFile
HttpEndRequestA
HttpSendRequestExA
GopherGetAttributeA
FtpOpenFileA
GopherCreateLocatorA
FtpFindFirstFileA
GopherOpenFileA
InternetOpenUrlA
winspool.drv

DocumentPropertiesA
ClosePrinter
OpenPrinterA